Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hrxx-273v-pgj4

Опубликовано: 08 сент. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Incorrect access control in the User Registration page of Crypto Currency Tracker (CCT) before v9.5 allows unauthenticated attackers to register as an Admin account via a crafted POST request.

Incorrect access control in the User Registration page of Crypto Currency Tracker (CCT) before v9.5 allows unauthenticated attackers to register as an Admin account via a crafted POST request.

EPSS

Процентиль: 87%
0.03462
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 9.8
nvd
больше 2 лет назад

Incorrect access control in the User Registration page of Crypto Currency Tracker (CCT) before v9.5 allows unauthenticated attackers to register as an Admin account via a crafted POST request.

EPSS

Процентиль: 87%
0.03462
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-284