Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j85g-452w-9q39

Опубликовано: 25 фев. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

The backend infrastructure shared by multiple mobile device monitoring services does not adequately authenticate or authorize API requests, creating an IDOR (Insecure Direct Object Reference) vulnerability.

The backend infrastructure shared by multiple mobile device monitoring services does not adequately authenticate or authorize API requests, creating an IDOR (Insecure Direct Object Reference) vulnerability.

EPSS

Процентиль: 65%
0.00498
Низкий

7.5 High

CVSS3

Дефекты

CWE-284
CWE-639
CWE-863

Связанные уязвимости

CVSS3: 7.5
nvd
почти 4 года назад

The backend infrastructure shared by multiple mobile device monitoring services does not adequately authenticate or authorize API requests, creating an IDOR (Insecure Direct Object Reference) vulnerability.

EPSS

Процентиль: 65%
0.00498
Низкий

7.5 High

CVSS3

Дефекты

CWE-284
CWE-639
CWE-863