CHANNEL ACCESSIBLE BY NON-ENDPOINT CWE-300
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 8.2epss 0.6%
exploitation probability
0.6%top 51% of all CVEs
observed exploitation
nono source reports it
Aethon TUG Home Base Server versions prior to version 24 are affected by un unauthenticated attacker who can freely access hashed user credentials.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N
Affected products
Aethon · TUG Home Base Server