Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3pjh-8rj7-xm2h

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In NCH Express Accounts 8.24 and earlier, an authenticated low-privilege user can enter a crafted URL to access higher-privileged functionalities such as Add/Edit users.

In NCH Express Accounts 8.24 and earlier, an authenticated low-privilege user can enter a crafted URL to access higher-privileged functionalities such as Add/Edit users.

EPSS

Процентиль: 49%
0.00262
Низкий

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 6.5
nvd
около 5 лет назад

In NCH Express Accounts 8.24 and earlier, an authenticated low-privilege user can enter a crafted URL to access higher-privileged functionalities such as Add/Edit users.

EPSS

Процентиль: 49%
0.00262
Низкий

Дефекты

CWE-269