Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f9fm-2jpj-p284

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Mahara before 1.5.12, 1.6.x before 1.6.7, and 1.7.x before 1.7.3 does not properly prevent access to blocks, which allows remote authenticated users to modify arbitrary blocks via the bock id in an edit request.

Mahara before 1.5.12, 1.6.x before 1.6.7, and 1.7.x before 1.7.3 does not properly prevent access to blocks, which allows remote authenticated users to modify arbitrary blocks via the bock id in an edit request.

EPSS

Процентиль: 70%
0.00621
Низкий

Связанные уязвимости

ubuntu
больше 11 лет назад

Mahara before 1.5.12, 1.6.x before 1.6.7, and 1.7.x before 1.7.3 does not properly prevent access to blocks, which allows remote authenticated users to modify arbitrary blocks via the bock id in an edit request.

nvd
больше 11 лет назад

Mahara before 1.5.12, 1.6.x before 1.6.7, and 1.7.x before 1.7.3 does not properly prevent access to blocks, which allows remote authenticated users to modify arbitrary blocks via the bock id in an edit request.

debian
больше 11 лет назад

Mahara before 1.5.12, 1.6.x before 1.6.7, and 1.7.x before 1.7.3 does ...

EPSS

Процентиль: 70%
0.00621
Низкий