Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j22m-fwc5-8qpp

Опубликовано: 03 янв. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

The Administrator function of EasyTest has an Incorrect Authorization vulnerability. A remote attacker authenticated as a general user can exploit this vulnerability to bypass the intended access restrictions, to make API functions calls, manipulate system and terminate service.

The Administrator function of EasyTest has an Incorrect Authorization vulnerability. A remote attacker authenticated as a general user can exploit this vulnerability to bypass the intended access restrictions, to make API functions calls, manipulate system and terminate service.

EPSS

Процентиль: 56%
0.00343
Низкий

8.8 High

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 8.8
nvd
около 3 лет назад

The Administrator function of EasyTest has an Incorrect Authorization vulnerability. A remote attacker authenticated as a general user can exploit this vulnerability to bypass the intended access restrictions, to make API functions calls, manipulate system and terminate service.

EPSS

Процентиль: 56%
0.00343
Низкий

8.8 High

CVSS3

Дефекты

CWE-863