Описание
Improper Privilege Management in Snipe-IT
Snipe-IT prior to 5.3.9 is vulnerable to improper privilege management. A user who does not have access to the supplier module may view supplier content.
Пакеты
Наименование
snipe/snipe-it
composer
Затронутые версииВерсия исправления
< 5.3.9
5.3.9
Связанные уязвимости
CVSS3: 6.5
nvd
почти 4 года назад
Missing Authorization in Packagist snipe/snipe-it prior to 5.3.9.
CVSS3: 6.5
debian
почти 4 года назад
Missing Authorization in Packagist snipe/snipe-it prior to 5.3.9.