Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7pgp-cxq5-cmcj

Опубликовано: 20 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 1
CVSS3: 9.1

Описание

Insufficient Granularity of Access Control vulnerability in opentext Flipper allows Exploiting Incorrectly Configured Access Control Security Levels. The vulnerability could allow a low privilege user to interact with the backend API without sufficient privileges.

This issue affects Flipper: 3.1.2.

Insufficient Granularity of Access Control vulnerability in opentext Flipper allows Exploiting Incorrectly Configured Access Control Security Levels. The vulnerability could allow a low privilege user to interact with the backend API without sufficient privileges.

This issue affects Flipper: 3.1.2.

EPSS

Процентиль: 16%
0.00051
Низкий

1 Low

CVSS4

9.1 Critical

CVSS3

Дефекты

CWE-1220

Связанные уязвимости

CVSS3: 9.1
nvd
4 месяца назад

Insufficient Granularity of Access Control vulnerability in opentext Flipper allows Exploiting Incorrectly Configured Access Control Security Levels. The vulnerability could allow a low privilege user to interact with the backend API without sufficient privileges. This issue affects Flipper: 3.1.2.

EPSS

Процентиль: 16%
0.00051
Низкий

1 Low

CVSS4

9.1 Critical

CVSS3

Дефекты

CWE-1220