Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5g9h-w8cm-q83h

Опубликовано: 22 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Archer Platform 2024.03 before version 2024.09 is affected by an API authorization bypass vulnerability related to supporting application files. A remote unprivileged attacker could potentially exploit this vulnerability to elevate their privileges and upload additional system icons.

Archer Platform 2024.03 before version 2024.09 is affected by an API authorization bypass vulnerability related to supporting application files. A remote unprivileged attacker could potentially exploit this vulnerability to elevate their privileges and upload additional system icons.

EPSS

Процентиль: 18%
0.00058
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 6.5
nvd
больше 1 года назад

Archer Platform 2024.03 before version 2024.09 is affected by an API authorization bypass vulnerability related to supporting application files. A remote unprivileged attacker could potentially exploit this vulnerability to elevate their privileges and upload additional system icons.

EPSS

Процентиль: 18%
0.00058
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-863