Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fp4p-v2wc-5727

Опубликовано: 21 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

An issue was discovered on Kyocera d-COLOR MF3555 2XD_S000.002.271 devices. The Web Application is affected by Broken Access Control. It does not properly validate requests for access to data and functionality under the /mngset/authset path. By not verifying permissions for access to resources, it allows a potential attacker to view pages that are not allowed.

An issue was discovered on Kyocera d-COLOR MF3555 2XD_S000.002.271 devices. The Web Application is affected by Broken Access Control. It does not properly validate requests for access to data and functionality under the /mngset/authset path. By not verifying permissions for access to resources, it allows a potential attacker to view pages that are not allowed.

EPSS

Процентиль: 38%
0.00164
Низкий

8.1 High

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 8.1
nvd
почти 4 года назад

An issue was discovered on Olivetti d-COLOR MF3555 2XD_S000.002.271 devices. The Web Application is affected by Broken Access Control. It does not properly validate requests for access to data and functionality under the /mngset/authset path. By not verifying permissions for access to resources, it allows a potential attacker to view pages that are not allowed.

EPSS

Процентиль: 38%
0.00164
Низкий

8.1 High

CVSS3

Дефекты

CWE-863