Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v85w-cvcx-r2qh

Опубликовано: 30 нояб. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

Catalis (previously Icon Software) CMS360 allows a remote, unauthenticated attacker to view sensitive court documents by modifying document and other identifiers in URLs. The impact varies based on the intention and configuration of a specific CMS360 installation.

Catalis (previously Icon Software) CMS360 allows a remote, unauthenticated attacker to view sensitive court documents by modifying document and other identifiers in URLs. The impact varies based on the intention and configuration of a specific CMS360 installation.

EPSS

Процентиль: 75%
0.00859
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-639

Связанные уязвимости

CVSS3: 5.3
nvd
около 2 лет назад

Catalis (previously Icon Software) CMS360 allows a remote, unauthenticated attacker to view sensitive court documents by modifying document and other identifiers in URLs. The impact varies based on the intention and configuration of a specific CMS360 installation.

EPSS

Процентиль: 75%
0.00859
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-639