Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hcqh-2x7m-p53x

Опубликовано: 17 окт. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

A flaw was found in the RHDM, where an authenticated attacker can change their assigned role in the response header. This flaw allows an attacker to gain admin privileges in the Business Central Console.

A flaw was found in the RHDM, where an authenticated attacker can change their assigned role in the response header. This flaw allows an attacker to gain admin privileges in the Business Central Console.

EPSS

Процентиль: 56%
0.00338
Низкий

8.8 High

CVSS3

Дефекты

CWE-281

Связанные уязвимости

CVSS3: 7.1
redhat
больше 4 лет назад

A flaw was found in the RHDM, where an authenticated attacker can change their assigned role in the response header. This flaw allows an attacker to gain admin privileges in the Business Central Console.

CVSS3: 8.8
nvd
больше 3 лет назад

A flaw was found in the RHDM, where an authenticated attacker can change their assigned role in the response header. This flaw allows an attacker to gain admin privileges in the Business Central Console.

EPSS

Процентиль: 56%
0.00338
Низкий

8.8 High

CVSS3

Дефекты

CWE-281