Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mxm2-h8f8-cg3h

Опубликовано: 14 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Broken Access Control in the Report functionality of Delinea PAM Secret Server 11.4 allows unprivileged users, when Unlimited Admin Mode is enabled, to view system reports and modify custom reports via the Report functionality in the Web UI.

Broken Access Control in the Report functionality of Delinea PAM Secret Server 11.4 allows unprivileged users, when Unlimited Admin Mode is enabled, to view system reports and modify custom reports via the Report functionality in the Web UI.

EPSS

Процентиль: 21%
0.00069
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 4.3
nvd
почти 2 года назад

Broken Access Control in the Report functionality of Delinea PAM Secret Server 11.4 allows unprivileged users, when Unlimited Admin Mode is enabled, to view system reports and modify custom reports via the Report functionality in the Web UI.

EPSS

Процентиль: 21%
0.00069
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-284