Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2rmp-82h5-59gg

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

eZ publish before 3.8.9, and 3.9 before 3.9.3, does not properly check permissions on module views that lack a policy function, which has unknown impact and attack vectors, as demonstrated by a vulnerability in the discount functionality in the shop module.

eZ publish before 3.8.9, and 3.9 before 3.9.3, does not properly check permissions on module views that lack a policy function, which has unknown impact and attack vectors, as demonstrated by a vulnerability in the discount functionality in the shop module.

EPSS

Процентиль: 76%
0.01797
Низкий

Связанные уязвимости

ubuntu
почти 19 лет назад

eZ publish before 3.8.9, and 3.9 before 3.9.3, does not properly check permissions on module views that lack a policy function, which has unknown impact and attack vectors, as demonstrated by a vulnerability in the discount functionality in the shop module.

nvd
почти 19 лет назад

eZ publish before 3.8.9, and 3.9 before 3.9.3, does not properly check permissions on module views that lack a policy function, which has unknown impact and attack vectors, as demonstrated by a vulnerability in the discount functionality in the shop module.

debian
почти 19 лет назад

eZ publish before 3.8.9, and 3.9 before 3.9.3, does not properly check ...

EPSS

Процентиль: 76%
0.01797
Низкий