Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8v47-p595-5p8g

Опубликовано: 11 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.7

Описание

W. W. Norton InQuizitive through 2025-04-08 allows students to insert arbitrary records of their quiz performance into the backend, because only client-side access control exists.

W. W. Norton InQuizitive through 2025-04-08 allows students to insert arbitrary records of their quiz performance into the backend, because only client-side access control exists.

EPSS

Процентиль: 23%
0.00074
Низкий

7.7 High

CVSS3

Дефекты

CWE-602

Связанные уязвимости

CVSS3: 7.7
nvd
10 месяцев назад

W. W. Norton InQuizitive through 2025-04-08 allows students to insert arbitrary records of their quiz performance into the backend, because only client-side access control exists.

EPSS

Процентиль: 23%
0.00074
Низкий

7.7 High

CVSS3

Дефекты

CWE-602