Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p48q-c4h7-vj6x

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

CGI Script Center News Update 1.1 does not properly validate the original news administration password during a password change operation, which allows remote attackers to modify the password without knowing the original password.

CGI Script Center News Update 1.1 does not properly validate the original news administration password during a password change operation, which allows remote attackers to modify the password without knowing the original password.

EPSS

Процентиль: 93%
0.1071
Средний

9.8 Critical

CVSS3

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 9.8
nvd
около 25 лет назад

CGI Script Center News Update 1.1 does not properly validate the original news administration password during a password change operation, which allows remote attackers to modify the password without knowing the original password.

EPSS

Процентиль: 93%
0.1071
Средний

9.8 Critical

CVSS3

Дефекты

CWE-522