Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7vm3-67hm-9frc

Опубликовано: 26 янв. 2022
Источник: github
Github: Не прошло ревью

Описание

xzs-mysql >= t3.4.0 is vulnerable to Insecure Permissions. The front end of this open source system is an online examination system. There is an unsafe vulnerability in the functional method of submitting examination papers. An attacker can use burpuite to modify parameters in the packet to destroy real data.

xzs-mysql >= t3.4.0 is vulnerable to Insecure Permissions. The front end of this open source system is an online examination system. There is an unsafe vulnerability in the functional method of submitting examination papers. An attacker can use burpuite to modify parameters in the packet to destroy real data.

EPSS

Процентиль: 35%
0.00148
Низкий

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 7.5
nvd
около 4 лет назад

xzs-mysql >= t3.4.0 is vulnerable to Insecure Permissions. The front end of this open source system is an online examination system. There is an unsafe vulnerability in the functional method of submitting examination papers. An attacker can use burpuite to modify parameters in the packet to destroy real data.

EPSS

Процентиль: 35%
0.00148
Низкий

Дефекты

CWE-276