Логотип exploitDog
bind:CVE-2022-23650
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-23650

Количество 2

Количество 2

nvd логотип

CVE-2022-23650

почти 4 года назад

Netmaker is a platform for creating and managing virtual overlay networks using WireGuard. Prior to versions 0.8.5, 0.9.4, and 010.0, there is a hard-coded cryptographic key in the code base which can be exploited to run admin commands on a remote server if the exploiter know the address and username of the admin. This effects the server (netmaker) component, and not clients. This has been patched in Netmaker v0.8.5, v0.9.4, and v0.10.0. There are currently no known workarounds.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-86f3-hf24-76q4

почти 4 года назад

Use of Hard-coded Cryptographic Key in Netmaker

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-23650

Netmaker is a platform for creating and managing virtual overlay networks using WireGuard. Prior to versions 0.8.5, 0.9.4, and 010.0, there is a hard-coded cryptographic key in the code base which can be exploited to run admin commands on a remote server if the exploiter know the address and username of the admin. This effects the server (netmaker) component, and not clients. This has been patched in Netmaker v0.8.5, v0.9.4, and v0.10.0. There are currently no known workarounds.

CVSS3: 7.2
1%
Низкий
почти 4 года назад
github логотип
GHSA-86f3-hf24-76q4

Use of Hard-coded Cryptographic Key in Netmaker

CVSS3: 7.2
1%
Низкий
почти 4 года назад

Уязвимостей на страницу