Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7w7v-v6f9-93rj

Опубликовано: 28 нояб. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 7.7
CVSS3: 7.5

Описание

WebITR developed by Uniong has an Authentication Bypass vulnerability, allowing authenticated remote attackers to log into the system as any user by modifying a specific parameter. Attackers must first obtain a user ID to exploit this vulnerability.

WebITR developed by Uniong has an Authentication Bypass vulnerability, allowing authenticated remote attackers to log into the system as any user by modifying a specific parameter. Attackers must first obtain a user ID to exploit this vulnerability.

EPSS

Процентиль: 52%
0.00292
Низкий

7.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-639

Связанные уязвимости

CVSS3: 7.5
nvd
2 месяца назад

WebITR developed by Uniong has an Authentication Bypass vulnerability, allowing authenticated remote attackers to log into the system as any user by modifying a specific parameter. Attackers must first obtain a user ID to exploit this vulnerability.

EPSS

Процентиль: 52%
0.00292
Низкий

7.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-639