Логотип exploitDog
bind:CVE-2025-26339
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-26339

Количество 2

Количество 2

nvd логотип

CVE-2025-26339

12 месяцев назад

A CWE-306 "Missing Authentication for Critical Function" in maxtime/handleRoute.lua in Q-Free MaxTime less than or equal to version 2.11.0 allows an unauthenticated remote attacker to affect the device confidentiality, integrity, or availability in multiple unspecified ways via crafted HTTP requests.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-6g66-g3cm-gp6c

12 месяцев назад

A CWE-306 "Missing Authentication for Critical Function" in maxtime/handleRoute.lua in Q-Free MaxTime less than or equal to version 2.11.0 allows an unauthenticated remote attacker to affect the device confidentiality, integrity, or availability in multiple unspecified ways via crafted HTTP requests.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-26339

A CWE-306 "Missing Authentication for Critical Function" in maxtime/handleRoute.lua in Q-Free MaxTime less than or equal to version 2.11.0 allows an unauthenticated remote attacker to affect the device confidentiality, integrity, or availability in multiple unspecified ways via crafted HTTP requests.

CVSS3: 9.8
0%
Низкий
12 месяцев назад
github логотип
GHSA-6g66-g3cm-gp6c

A CWE-306 "Missing Authentication for Critical Function" in maxtime/handleRoute.lua in Q-Free MaxTime less than or equal to version 2.11.0 allows an unauthenticated remote attacker to affect the device confidentiality, integrity, or availability in multiple unspecified ways via crafted HTTP requests.

CVSS3: 9.8
0%
Низкий
12 месяцев назад

Уязвимостей на страницу