Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m48w-79jh-f8w7

Опубликовано: 12 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

An issue in Mirapolis LMS 4.6.XX allows authenticated users to exploit an Insecure Direct Object Reference (IDOR) vulnerability by manipulating the ID parameter and increment STEP parameter, leading to the exposure of sensitive user data.

An issue in Mirapolis LMS 4.6.XX allows authenticated users to exploit an Insecure Direct Object Reference (IDOR) vulnerability by manipulating the ID parameter and increment STEP parameter, leading to the exposure of sensitive user data.

EPSS

Процентиль: 43%
0.0021
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-639

Связанные уязвимости

CVSS3: 4.3
nvd
больше 1 года назад

An issue in Mirapolis LMS 4.6.XX allows authenticated users to exploit an Insecure Direct Object Reference (IDOR) vulnerability by manipulating the ID parameter and increment STEP parameter, leading to the exposure of sensitive user data.

EPSS

Процентиль: 43%
0.0021
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-639