Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gj7r-228j-689h

Опубликовано: 23 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.3
CVSS3: 9.8

Описание

SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an insecure direct object reference vulnerability that allows attackers to bypass authorization and access hidden system resources. Attackers can exploit the vulnerability by manipulating user-supplied input to execute privileged functionalities without proper authentication.

SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an insecure direct object reference vulnerability that allows attackers to bypass authorization and access hidden system resources. Attackers can exploit the vulnerability by manipulating user-supplied input to execute privileged functionalities without proper authentication.

EPSS

Процентиль: 67%
0.00539
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-639

Связанные уязвимости

CVSS3: 9.8
nvd
около 2 месяцев назад

SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an insecure direct object reference vulnerability that allows attackers to bypass authorization and access hidden system resources. Attackers can exploit the vulnerability by manipulating user-supplied input to execute privileged functionalities without proper authentication.

EPSS

Процентиль: 67%
0.00539
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-639