Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c8f3-gj35-46cf

Опубликовано: 13 июн. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

SCG Policy Manager, all versions, contains an overly permissive Cross-Origin Resource Policy (CORP) vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of malicious actions on the application in the context of the authenticated user.

SCG Policy Manager, all versions, contains an overly permissive Cross-Origin Resource Policy (CORP) vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of malicious actions on the application in the context of the authenticated user.

EPSS

Процентиль: 89%
0.04411
Низкий

7.5 High

CVSS3

Дефекты

CWE-697
CWE-942

Связанные уязвимости

CVSS3: 7.5
nvd
больше 1 года назад

SCG Policy Manager, all versions, contains an overly permissive Cross-Origin Resource Policy (CORP) vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of malicious actions on the application in the context of the authenticated user.

EPSS

Процентиль: 89%
0.04411
Низкий

7.5 High

CVSS3

Дефекты

CWE-697
CWE-942