Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jgxr-2v2p-f979

Опубликовано: 10 нояб. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Agentflow BPM enterprise management system has improper authentication. A remote attacker with general user privilege can change the name of the user account to acquire arbitrary account privilege, and access, manipulate system or disrupt service.

Agentflow BPM enterprise management system has improper authentication. A remote attacker with general user privilege can change the name of the user account to acquire arbitrary account privilege, and access, manipulate system or disrupt service.

EPSS

Процентиль: 79%
0.01226
Низкий

8.8 High

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 8.8
nvd
около 3 лет назад

Agentflow BPM enterprise management system has improper authentication. A remote attacker with general user privilege can change the name of the user account to acquire arbitrary account privilege, and access, manipulate system or disrupt service.

EPSS

Процентиль: 79%
0.01226
Низкий

8.8 High

CVSS3

Дефекты

CWE-287