Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vfm9-f37f-c9j3

Опубликовано: 10 янв. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

An issue was discovered in Archibus Web Central 2022.03.01.107. A service exposed by the application accepts a set of user-controlled parameters that are used to act on the data returned to the user. It allows a basic user to access data unrelated to their role.

An issue was discovered in Archibus Web Central 2022.03.01.107. A service exposed by the application accepts a set of user-controlled parameters that are used to act on the data returned to the user. It allows a basic user to access data unrelated to their role.

EPSS

Процентиль: 42%
0.00196
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 6.5
nvd
около 3 лет назад

An issue was discovered in Archibus Web Central 2022.03.01.107. A service exposed by the application accepts a set of user-controlled parameters that are used to act on the data returned to the user. It allows a basic user to access data unrelated to their role.

EPSS

Процентиль: 42%
0.00196
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-284