Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8wr9-j43r-pc9h

Опубликовано: 23 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

Tabit - Arbitrary account modification. One of the endpoints mapped by the tiny URL, was a page where an adversary can modify personal details, such as email addresses and phone numbers of a specific user in a restaurant's loyalty program. Possibly allowing account takeover (the mail can be used to reset password).

Tabit - Arbitrary account modification. One of the endpoints mapped by the tiny URL, was a page where an adversary can modify personal details, such as email addresses and phone numbers of a specific user in a restaurant's loyalty program. Possibly allowing account takeover (the mail can be used to reset password).

EPSS

Процентиль: 44%
0.0022
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.3
nvd
больше 3 лет назад

Tabit - Arbitrary account modification. One of the endpoints mapped by the tiny URL, was a page where an adversary can modify personal details, such as email addresses and phone numbers of a specific user in a restaurant's loyalty program. Possibly allowing account takeover (the mail can be used to reset password).

EPSS

Процентиль: 44%
0.0022
Низкий

5.3 Medium

CVSS3