7.5
CVE-2021-45475
- EPSS 0.5%
- Veröffentlicht 27.10.2022 10:15:10
- Zuletzt bearbeitet 18.05.2026 13:16:30
- Quelle iletisim@usom.gov.tr
- CVE-Watchlists
- Unerledigt
Information disclosure in Yordam Library Information Document Automation Program
Yordam Library Information Document Automation product before version 19.02 has an unauthenticated Information disclosure vulnerability.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Yordam ≫ Library Automation System Version < 19.02
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.5% | 0.388 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
| iletisim@usom.gov.tr | 5.3 | 3.9 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
https://www.usom.gov.tr/bildirim/tr-22-0669
https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-22-0669