Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hrx4-q45p-xfr7

Опубликовано: 29 сент. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Smart eVision has inadequate authorization for the database query function. A remote attacker with general user privilege, who is not explicitly authorized to access the information, can access sensitive information.

Smart eVision has inadequate authorization for the database query function. A remote attacker with general user privilege, who is not explicitly authorized to access the information, can access sensitive information.

EPSS

Процентиль: 44%
0.00219
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 6.5
nvd
больше 3 лет назад

Smart eVision has inadequate authorization for the database query function. A remote attacker with general user privilege, who is not explicitly authorized to access the information, can access sensitive information.

EPSS

Процентиль: 44%
0.00219
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-863