Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hm88-4c8q-7h3p

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The tipafriend function in eZ publish before 3.8.9, and 3.9 before 3.9.3, does not limit access by anonymous users, which allows remote attackers to conduct spam attacks.

The tipafriend function in eZ publish before 3.8.9, and 3.9 before 3.9.3, does not limit access by anonymous users, which allows remote attackers to conduct spam attacks.

EPSS

Процентиль: 76%
0.0111
Низкий

Связанные уязвимости

ubuntu
больше 18 лет назад

The tipafriend function in eZ publish before 3.8.9, and 3.9 before 3.9.3, does not limit access by anonymous users, which allows remote attackers to conduct spam attacks.

nvd
больше 18 лет назад

The tipafriend function in eZ publish before 3.8.9, and 3.9 before 3.9.3, does not limit access by anonymous users, which allows remote attackers to conduct spam attacks.

debian
больше 18 лет назад

The tipafriend function in eZ publish before 3.8.9, and 3.9 before 3.9 ...

EPSS

Процентиль: 76%
0.0111
Низкий