Описание
FormCMS has an improper access control vulnerability in the /api/schemas/history/[schemaId] endpoint
An improper access control vulnerability in FormCms v0.5.4 in the /api/schemas/history/[schemaId] endpoint allows unauthenticated attackers to access historical schema data if a valid schemaId is known or guessed.
Пакеты
Наименование
FormCMS
nuget
Затронутые версииВерсия исправления
<= 0.5.4
0.5.5
Связанные уязвимости
CVSS3: 6.5
nvd
4 месяца назад
An improper access control vulnerability in FormCms v0.5.4 in the /api/schemas/history/[schemaId] endpoint allows unauthenticated attackers to access historical schema data if a valid schemaId is known or guessed.