Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4fm2-h577-f3g8

Опубликовано: 16 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.6

Описание

Dell E-Lab Navigator, [3.1.9, 3.2.0], contains an Insecure Direct Object Reference Vulnerability in Feedback submission. An attacker could potentially exploit this vulnerability, to manipulate the email's appearance, potentially deceiving recipients and causing reputational and security risks.

Dell E-Lab Navigator, [3.1.9, 3.2.0], contains an Insecure Direct Object Reference Vulnerability in Feedback submission. An attacker could potentially exploit this vulnerability, to manipulate the email's appearance, potentially deceiving recipients and causing reputational and security risks.

EPSS

Процентиль: 16%
0.00051
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-451
CWE-639

Связанные уязвимости

CVSS3: 4.4
nvd
почти 2 года назад

Dell Mobility - E-Lab Navigator, version(s) 3.1.9, 3.2.0, contain(s) an Authorization Bypass Through User-Controlled Key vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Launch of phishing attacks.

EPSS

Процентиль: 16%
0.00051
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-451
CWE-639