Lucene search

K
prionPRIOn knowledge basePRION:CVE-2016-8627
HistoryMay 11, 2018 - 1:29 p.m.

Design/Logic Flaw

2018-05-1113:29:00
PRIOn knowledge base
www.prio-n.com
5

6.7 Medium

AI Score

Confidence

Low

0.005 Low

EPSS

Percentile

77.0%

admin-cli before versions 3.0.0.alpha25, 2.2.1.cr2 is vulnerable to an EAP feature to download server log files that allows logs to be available via GET requests making them vulnerable to cross-origin attacks. An attacker could trigger the user’s browser to request the log files consuming enough resources that normal server functioning could be impaired.

6.7 Medium

AI Score

Confidence

Low

0.005 Low

EPSS

Percentile

77.0%