Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jcjf-6r3f-3cjg

Опубликовано: 29 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

An issue was discovered in Sesami Cash Point & Transport Optimizer (CPTO) 6.3.8.6 (#718), allows remote attackers to obtain sensitive information and bypass profile restriction via improper access control in the Reader system user's web browser, allowing the journal to be displayed, despite the option being disabled.

An issue was discovered in Sesami Cash Point & Transport Optimizer (CPTO) 6.3.8.6 (#718), allows remote attackers to obtain sensitive information and bypass profile restriction via improper access control in the Reader system user's web browser, allowing the journal to be displayed, despite the option being disabled.

EPSS

Процентиль: 26%
0.00092
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
nvd
около 2 лет назад

An issue was discovered in Sesami Cash Point & Transport Optimizer (CPTO) 6.3.8.6 (#718), allows remote attackers to obtain sensitive information and bypass profile restriction via improper access control in the Reader system user's web browser, allowing the journal to be displayed, despite the option being disabled.

EPSS

Процентиль: 26%
0.00092
Низкий

4.3 Medium

CVSS3