Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v6hh-xjmv-mxf7

Опубликовано: 22 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 5.3
CVSS3: 4.3

Описание

A vulnerability classified as problematic was found in YXJ2018 SpringBoot-Vue-OnlineExam 1.0. This vulnerability affects unknown code of the file /api/studentPWD. The manipulation of the argument studentId leads to unverified password change. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

A vulnerability classified as problematic was found in YXJ2018 SpringBoot-Vue-OnlineExam 1.0. This vulnerability affects unknown code of the file /api/studentPWD. The manipulation of the argument studentId leads to unverified password change. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 22%
0.0007
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-620

Связанные уязвимости

CVSS3: 4.3
nvd
10 месяцев назад

A vulnerability classified as problematic was found in YXJ2018 SpringBoot-Vue-OnlineExam 1.0. This vulnerability affects unknown code of the file /api/studentPWD. The manipulation of the argument studentId leads to unverified password change. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 22%
0.0007
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-620