Update exposed-redis.yaml

This suggests a CWE classification
patch-1
Neriberto CP 2023-08-28 13:28:41 -03:00 committed by Neriberto C.Prado
parent 08e045eb08
commit a8683c1bb9
1 changed files with 4 additions and 0 deletions

View File

@ -7,6 +7,10 @@ info:
description: Redis server without any required authentication was discovered.
reference:
- https://redis.io/topics/security
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N
cvss-score: 7.2
cwe-id: CWE-306
metadata:
max-request: 4
tags: network,redis,unauth,exposure