Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8qrr-cpmw-jq92

Опубликовано: 17 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

The /rest/rights/ REST API endpoint in Becon DATAGerry through 2.2.0 contains an Incorrect Access Control vulnerability. An attacker can remotely access this endpoint without authentication, leading to unauthorized disclosure of sensitive information.

The /rest/rights/ REST API endpoint in Becon DATAGerry through 2.2.0 contains an Incorrect Access Control vulnerability. An attacker can remotely access this endpoint without authentication, leading to unauthorized disclosure of sensitive information.

EPSS

Процентиль: 97%
0.37152
Средний

6.5 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 6.5
nvd
около 1 года назад

The /rest/rights/ REST API endpoint in Becon DATAGerry through 2.2.0 contains an Incorrect Access Control vulnerability. An attacker can remotely access this endpoint without authentication, leading to unauthorized disclosure of sensitive information.

EPSS

Процентиль: 97%
0.37152
Средний

6.5 Medium

CVSS3

Дефекты

CWE-862