Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f3wf-2g4f-5hv8

Опубликовано: 26 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

Seth Fogie, member of AXIS Camera Station Pro Bug Bounty Program has found that it is possible to edit and/or remove views without the necessary permission due to a client-side-only check. Axis has released patched versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.

Seth Fogie, member of AXIS Camera Station Pro Bug Bounty Program has found that it is possible to edit and/or remove views without the necessary permission due to a client-side-only check. Axis has released patched versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.

EPSS

Процентиль: 16%
0.0005
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-602

Связанные уязвимости

CVSS3: 4.4
nvd
около 1 года назад

Seth Fogie, member of AXIS Camera Station Pro Bug Bounty Program has found that it is possible to edit and/or remove views without the necessary permission due to a client-side-only check. Axis has released patched versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.

EPSS

Процентиль: 16%
0.0005
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-602