Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7pq6-99v4-7fp6

Опубликовано: 01 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

Insufficient Input Validation in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <= 7.1.27 on an object’s attributes with numeric format allows an authenticated remote attacker with Object Modification privileges to insert an unexpected format, which makes the affected attribute non-editable.

Insufficient Input Validation in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <= 7.1.27 on an object’s attributes with numeric format allows an authenticated remote attacker with Object Modification privileges to insert an unexpected format, which makes the affected attribute non-editable.

EPSS

Процентиль: 36%
0.00147
Низкий

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 4.3
nvd
около 4 лет назад

Insufficient Input Validation in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <= 7.1.27 on an object’s attributes with numeric format allows an authenticated remote attacker with Object Modification privileges to insert an unexpected format, which makes the affected attribute non-editable.

EPSS

Процентиль: 36%
0.00147
Низкий

Дефекты

CWE-20