Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qmmj-jp9v-hhrm

Опубликовано: 15 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

EBM Technologies RISWEB's specific URL path is not properly controlled by permission, allowing attackers to browse specific pages and query sensitive data without login.

EBM Technologies RISWEB's specific URL path is not properly controlled by permission, allowing attackers to browse specific pages and query sensitive data without login.

EPSS

Процентиль: 21%
0.00066
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-284
CWE-306

Связанные уязвимости

CVSS3: 5.3
nvd
почти 2 года назад

EBM Technologies RISWEB's specific URL path is not properly controlled by permission, allowing attackers to browse specific pages and query sensitive data without login.

EPSS

Процентиль: 21%
0.00066
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-284
CWE-306