Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j3v3-2jrv-w8cx

Опубликовано: 03 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Insufficient access checks in Visual Planning Admin Center 8 before v.1 Build 240207 allow attackers in possession of a non-administrative Visual Planning account to utilize functions normally reserved for administrators. The affected functions allow attackers to obtain different types of configured credentials and potentially elevate their privileges to administrator level.

Insufficient access checks in Visual Planning Admin Center 8 before v.1 Build 240207 allow attackers in possession of a non-administrative Visual Planning account to utilize functions normally reserved for administrators. The affected functions allow attackers to obtain different types of configured credentials and potentially elevate their privileges to administrator level.

EPSS

Процентиль: 30%
0.00108
Низкий

8.8 High

CVSS3

Дефекты

CWE-284
CWE-522

Связанные уязвимости

CVSS3: 8.8
nvd
больше 1 года назад

Insufficient access checks in Visual Planning Admin Center 8 before v.1 Build 240207 allow attackers in possession of a non-administrative Visual Planning account to utilize functions normally reserved for administrators. The affected functions allow attackers to obtain different types of configured credentials and potentially elevate their privileges to administrator level.

EPSS

Процентиль: 30%
0.00108
Низкий

8.8 High

CVSS3

Дефекты

CWE-284
CWE-522