Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pmpm-gxwf-jp9j

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

GE Digital APM Classic, Versions 4.4 and prior. An insecure direct object reference (IDOR) vulnerability allows user account data to be downloaded in JavaScript object notation (JSON) format by users who should not have access to such functionality. An attacker can download sensitive data related to user accounts without having the proper privileges.

GE Digital APM Classic, Versions 4.4 and prior. An insecure direct object reference (IDOR) vulnerability allows user account data to be downloaded in JavaScript object notation (JSON) format by users who should not have access to such functionality. An attacker can download sensitive data related to user accounts without having the proper privileges.

EPSS

Процентиль: 37%
0.00159
Низкий

Связанные уязвимости

CVSS3: 5.3
nvd
больше 5 лет назад

GE Digital APM Classic, Versions 4.4 and prior. An insecure direct object reference (IDOR) vulnerability allows user account data to be downloaded in JavaScript object notation (JSON) format by users who should not have access to such functionality. An attacker can download sensitive data related to user accounts without having the proper privileges.

EPSS

Процентиль: 37%
0.00159
Низкий