Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p876-v3r6-x3m8

Опубликовано: 05 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 2.1
CVSS3: 4.3

Описание

A vulnerability was detected in Dromara lamp-cloud up to 5.8.1. This vulnerability affects the function pageUser of the file /defUser/pageUser of the component DefUserController. Performing a manipulation results in improper authorization. The attack can be initiated remotely. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

A vulnerability was detected in Dromara lamp-cloud up to 5.8.1. This vulnerability affects the function pageUser of the file /defUser/pageUser of the component DefUserController. Performing a manipulation results in improper authorization. The attack can be initiated remotely. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

EPSS

Процентиль: 1%
0.00009
Низкий

2.1 Low

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-266

Связанные уязвимости

CVSS3: 4.3
nvd
3 дня назад

A vulnerability was detected in Dromara lamp-cloud up to 5.8.1. This vulnerability affects the function pageUser of the file /defUser/pageUser of the component DefUserController. Performing a manipulation results in improper authorization. The attack can be initiated remotely. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

EPSS

Процентиль: 1%
0.00009
Низкий

2.1 Low

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-266