Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fq72-4xq4-w8hg

Опубликовано: 26 окт. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Sielco PolyEco1000 is vulnerable to an improper access control vulnerability when the application provides direct access to objects based on user-supplied input. As a result of this vulnerability attackers can bypass authorization and access resources behind protected pages.

Sielco PolyEco1000 is vulnerable to an improper access control vulnerability when the application provides direct access to objects based on user-supplied input. As a result of this vulnerability attackers can bypass authorization and access resources behind protected pages.

EPSS

Процентиль: 4%
0.00019
Низкий

7.5 High

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 7.5
nvd
больше 2 лет назад

Sielco PolyEco1000 is vulnerable to an improper access control vulnerability when the application provides direct access to objects based on user-supplied input. As a result of this vulnerability attackers can bypass authorization and access resources behind protected pages.

EPSS

Процентиль: 4%
0.00019
Низкий

7.5 High

CVSS3

Дефекты

CWE-284