Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-32357

Опубликовано: 05 апр. 2025
Источник: debian
EPSS Низкий

Описание

In Zammad 6.4.x before 6.4.2, an authenticated agent with knowledge base permissions was able to use the Zammad API to fetch knowledge base content that they have no permission for.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
zammaditppackage

EPSS

Процентиль: 37%
0.00157
Низкий

Связанные уязвимости

CVSS3: 4.3
nvd
10 месяцев назад

In Zammad 6.4.x before 6.4.2, an authenticated agent with knowledge base permissions was able to use the Zammad API to fetch knowledge base content that they have no permission for.

CVSS3: 4.3
github
10 месяцев назад

In Zammad 6.4.x before 6.4.2, an authenticated agent with knowledge base permissions was able to use the Zammad API to fetch knowledge base content that they have no permission for.

EPSS

Процентиль: 37%
0.00157
Низкий