Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pp59-h84v-cqmh

Опубликовано: 02 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

Improper access control in Subscriptions Folder path filter in Devolutions Server 2023.1.1 and earlier allows attackers with administrator privileges to retrieve usage information on folders in user vaults via a specific folder name.

Improper access control in Subscriptions Folder path filter in Devolutions Server 2023.1.1 and earlier allows attackers with administrator privileges to retrieve usage information on folders in user vaults via a specific folder name.

EPSS

Процентиль: 36%
0.00153
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-346

Связанные уязвимости

CVSS3: 4.9
nvd
почти 3 года назад

Improper access control in Subscriptions Folder path filter in Devolutions Server 2023.1.1 and earlier allows attackers with administrator privileges to retrieve usage information on folders in user vaults via a specific folder name.

EPSS

Процентиль: 36%
0.00153
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-346