Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-29vr-79w7-p649

Опубликовано: 11 мар. 2022
Источник: github
Github: Прошло ревью
CVSS3: 9.8

Описание

Duplicate Advisory: Incorrect Authorization in Gerapy

Duplicate Advisory

This advisory has been withdrawn because it is a duplicate of GHSA-9w7f-m4j4-j3xw. This link is maintained to preserve external references.

Original Description

An Access Control vunerabiity exists in Gerapy v 0.9.7 via the spider parameter in project_configure function.

Пакеты

Наименование

gerapy

pip
Затронутые версииВерсия исправления

< 0.9.8

0.9.8

9.8 Critical

CVSS3

Дефекты

CWE-863

Связанные уязвимости

nvd
почти 4 года назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-43857. Reason: This candidate is a reservation duplicate of CVE-2021-43857. Notes: All CVE users should reference CVE-2021-43857 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

9.8 Critical

CVSS3

Дефекты

CWE-863