logo

157 Unrestricted access between network segments


Description

The current network configuration lacks access restrictions between network segments, which would allow an attacker to access privileged server segments or services from unauthorized networks.


Impact

Obtain unauthorized access to network traffic.


Recommendation

Segment the corporate network using the principle of least privilege necessary to limit access to the database.


Threat

Unauthorized user in local network.


Expected Remediation Time

60 minutes.


Score 4.0

Default score using CVSS 4.0. It may change depending on the context of the src.

Base 4.0

  • Attack vector: A
  • Attack complexity: L
  • Attack Requirements: N
  • Privileges required: L
  • User interaction: N
  • Confidentiality (VC): L
  • Integrity (VI): N
  • Availability (VA): N
  • Confidentiality (SC): L
  • Integrity (SI): L
  • Availability (SA): L

Threat 4.0

  • Exploit maturity: X

Requirements


Fixes


Last updated

2024/02/14