Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cmx5-q475-7cqr

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In Mahara 19.04 before 19.04.5 and 19.10 before 19.10.3, account details are shared in the Elasticsearch results for accounts that are not accessible when the config setting 'Isolated institutions' is turned on.

In Mahara 19.04 before 19.04.5 and 19.10 before 19.10.3, account details are shared in the Elasticsearch results for accounts that are not accessible when the config setting 'Isolated institutions' is turned on.

EPSS

Процентиль: 41%
0.00189
Низкий

Связанные уязвимости

CVSS3: 4.3
ubuntu
почти 6 лет назад

In Mahara 19.04 before 19.04.5 and 19.10 before 19.10.3, account details are shared in the Elasticsearch results for accounts that are not accessible when the config setting 'Isolated institutions' is turned on.

CVSS3: 4.3
nvd
почти 6 лет назад

In Mahara 19.04 before 19.04.5 and 19.10 before 19.10.3, account details are shared in the Elasticsearch results for accounts that are not accessible when the config setting 'Isolated institutions' is turned on.

CVSS3: 4.3
debian
почти 6 лет назад

In Mahara 19.04 before 19.04.5 and 19.10 before 19.10.3, account detai ...

EPSS

Процентиль: 41%
0.00189
Низкий