Pumpkin-ito/Cve-Vuln

Pumpkin-ito/Cve-Vuln

GitHubGitHub
Unavailable
This project is no longer available (or publicly accessible) from GitHub
Releases0

CVE History

CVEPublishedCVSS v3CVSS v2
5.3 MEDIUM

Shenzhen Guoxin Synthesis image system before 8.3.0 allows username enumeration because of the response discrepancy of incorrect versus error.

9.8 CRITICAL

Shenzhen Guoxin Synthesis image system before 8.3.0 has a 123456Qw default password.

7.5 HIGH

Shenzhen Guoxin Synthesis image system before 8.3.0 allows unauthorized user information retrieval via the queryUser API.

9.8 CRITICAL

Shenzhen Guoxin Synthesis image system before 8.3.0 allows unauthorized password resets via the resetPassword API.