Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rcj8-5g6r-c9cg

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In Correspondence Management System (corms) in Newgen eGov 12.0, an attacker can modify other users' profile information by manipulating the unvalidated UserIndex parameter, aka Insecure Direct Object Reference.

In Correspondence Management System (corms) in Newgen eGov 12.0, an attacker can modify other users' profile information by manipulating the unvalidated UserIndex parameter, aka Insecure Direct Object Reference.

EPSS

Процентиль: 93%
0.10844
Средний

Связанные уязвимости

CVSS3: 7.5
nvd
около 5 лет назад

In Correspondence Management System (corms) in Newgen eGov 12.0, an attacker can modify other users' profile information by manipulating the unvalidated UserIndex parameter, aka Insecure Direct Object Reference.

EPSS

Процентиль: 93%
0.10844
Средний