Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mxcv-w3x2-ccgv

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The A-Form and A-Form bamboo before 1.3.6 and 2.x before 2.0.3, and A-Form PC and PC/Mobile before 3.1, plug-ins for Movable Type do not require administrative authentication, which allows remote authenticated users to modify data via unspecified vectors.

The A-Form and A-Form bamboo before 1.3.6 and 2.x before 2.0.3, and A-Form PC and PC/Mobile before 3.1, plug-ins for Movable Type do not require administrative authentication, which allows remote authenticated users to modify data via unspecified vectors.

EPSS

Процентиль: 66%
0.00523
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
больше 14 лет назад

The A-Form and A-Form bamboo before 1.3.6 and 2.x before 2.0.3, and A-Form PC and PC/Mobile before 3.1, plug-ins for Movable Type do not require administrative authentication, which allows remote authenticated users to modify data via unspecified vectors.

EPSS

Процентиль: 66%
0.00523
Низкий

Дефекты

CWE-287