Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9w3g-7p4g-r96x

Опубликовано: 15 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

A privilege escalation vulnerability was discovered that could allow a valid, authenticated LXCA user to escalate their permissions for a connected XCC instance when using LXCA as a Single Sign On (SSO) provider for XCC instances.

A privilege escalation vulnerability was discovered that could allow a valid, authenticated LXCA user to escalate their permissions for a connected XCC instance when using LXCA as a Single Sign On (SSO) provider for XCC instances.

EPSS

Процентиль: 17%
0.00053
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 6.8
nvd
около 1 года назад

A privilege escalation vulnerability was discovered that could allow a valid, authenticated LXCA user to escalate their permissions for a connected XCC instance when using LXCA as a Single Sign On (SSO) provider for XCC instances.

EPSS

Процентиль: 17%
0.00053
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-319