Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7r8m-v3x4-crwv

Опубликовано: 09 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Multiple Incorrect Access Control vulnerabilities in adata Software GmbH Mitarbeiterportal 2.15.2.0 allow remote authenticated, low-privileged users to carry out administrative functions and manipulate data of other users via unauthorized API calls.

Multiple Incorrect Access Control vulnerabilities in adata Software GmbH Mitarbeiterportal 2.15.2.0 allow remote authenticated, low-privileged users to carry out administrative functions and manipulate data of other users via unauthorized API calls.

EPSS

Процентиль: 15%
0.00049
Низкий

8.1 High

CVSS3

Дефекты

CWE-639

Связанные уязвимости

CVSS3: 8.1
nvd
2 месяца назад

Multiple Incorrect Access Control vulnerabilities in adata Software GmbH Mitarbeiterportal 2.15.2.0 allow remote authenticated, low-privileged users to carry out administrative functions and manipulate data of other users via unauthorized API calls.

EPSS

Процентиль: 15%
0.00049
Низкий

8.1 High

CVSS3

Дефекты

CWE-639