Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-22wf-h889-r7q7

Опубликовано: 26 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.3

Описание

Improper permission control vulnerability in the OXARI ServiceDesk application could allow an attacker using a guest access or an unprivileged account to gain additional administrative permissions in the application.This issue affects OXARI ServiceDesk in versions before 2.0.324.0.

Improper permission control vulnerability in the OXARI ServiceDesk application could allow an attacker using a guest access or an unprivileged account to gain additional administrative permissions in the application.This issue affects OXARI ServiceDesk in versions before 2.0.324.0.

EPSS

Процентиль: 30%
0.00109
Низкий

9.3 Critical

CVSS4

Дефекты

CWE-425
CWE-863

Связанные уязвимости

nvd
10 месяцев назад

Improper permission control vulnerability in the OXARI ServiceDesk application could allow an attacker using a guest access or an unprivileged account to gain additional administrative permissions in the application.This issue affects OXARI ServiceDesk in versions before 2.0.324.0.

EPSS

Процентиль: 30%
0.00109
Низкий

9.3 Critical

CVSS4

Дефекты

CWE-425
CWE-863