Логотип exploitDog
bind:CVE-2023-49599
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-49599

Количество 2

Количество 2

nvd логотип

CVE-2023-49599

около 2 лет назад

An insufficient entropy vulnerability exists in the salt generation functionality of WWBN AVideo dev master commit 15fed957fb. A specially crafted series of HTTP requests can lead to privilege escalation. An attacker can gather system information via HTTP requests and brute force the salt offline, leading to forging a legitimate password recovery code for the admin user.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-wqcc-qf63-c2x4

около 2 лет назад

WWBN AVideo Insufficient Entropy vulnerbaility

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-49599

An insufficient entropy vulnerability exists in the salt generation functionality of WWBN AVideo dev master commit 15fed957fb. A specially crafted series of HTTP requests can lead to privilege escalation. An attacker can gather system information via HTTP requests and brute force the salt offline, leading to forging a legitimate password recovery code for the admin user.

CVSS3: 9.8
0%
Низкий
около 2 лет назад
github логотип
GHSA-wqcc-qf63-c2x4

WWBN AVideo Insufficient Entropy vulnerbaility

CVSS3: 9.8
0%
Низкий
около 2 лет назад

Уязвимостей на страницу