Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ppq9-7r27-4m7g

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

account.asp in DUware DUclassmate 1.0 through 1.1 allows remote attackers to change the passwords for arbitrary users by modifying the MM_recordId parameter on the "My Account" page.

account.asp in DUware DUclassmate 1.0 through 1.1 allows remote attackers to change the passwords for arbitrary users by modifying the MM_recordId parameter on the "My Account" page.

EPSS

Процентиль: 88%
0.03832
Низкий

Связанные уязвимости

nvd
около 21 года назад

account.asp in DUware DUclassmate 1.0 through 1.1 allows remote attackers to change the passwords for arbitrary users by modifying the MM_recordId parameter on the "My Account" page.

EPSS

Процентиль: 88%
0.03832
Низкий