Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jvrh-c567-vwvq

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

confirm.php in ATutor 2.2 and earlier allows remote attackers to bypass authentication and gain access as an existing user via the auto_login parameter.

confirm.php in ATutor 2.2 and earlier allows remote attackers to bypass authentication and gain access as an existing user via the auto_login parameter.

EPSS

Процентиль: 83%
0.01843
Низкий

Связанные уязвимости

CVSS3: 9.8
nvd
почти 6 лет назад

confirm.php in ATutor 2.2 and earlier allows remote attackers to bypass authentication and gain access as an existing user via the auto_login parameter.

EPSS

Процентиль: 83%
0.01843
Низкий