10

CVE-2012-5864

Exploit
These Sinapsi devices 
do not check if users that visit pages within the device have properly 
authenticated. By directly visiting the pages within the device, 
attackers can gain unauthorized access with administrative privileges.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 18.26% 0.95
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
ics-cert@hq.dhs.gov 9.4 10 9.2
AV:N/AC:L/Au:N/C:C/I:C/A:N
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.