Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c2j6-8832-j4m5

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An Insecure Direct Object Reference (IDOR) vulnerability in eyecomms eyeCMS through 2019-10-15 allows any candidate to change other candidates' personal information (first name, last name, email, CV, phone number, and all other personal information) by changing the value of the candidate id (the id parameter).

An Insecure Direct Object Reference (IDOR) vulnerability in eyecomms eyeCMS through 2019-10-15 allows any candidate to change other candidates' personal information (first name, last name, email, CV, phone number, and all other personal information) by changing the value of the candidate id (the id parameter).

EPSS

Процентиль: 45%
0.00229
Низкий

Связанные уязвимости

CVSS3: 4.3
nvd
около 6 лет назад

An Insecure Direct Object Reference (IDOR) vulnerability in eyecomms eyeCMS through 2019-10-15 allows any candidate to change other candidates' personal information (first name, last name, email, CV, phone number, and all other personal information) by changing the value of the candidate id (the id parameter).

EPSS

Процентиль: 45%
0.00229
Низкий