Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w922-qg6g-84wc

Опубликовано: 08 мар. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

feiqu-opensource Background Vertical authorization vulnerability exists in IndexController.java. demo users with low permission can perform operations within the permission of the admin super administrator and can use this vulnerability to change the blacklist IP address in the system at will.

feiqu-opensource Background Vertical authorization vulnerability exists in IndexController.java. demo users with low permission can perform operations within the permission of the admin super administrator and can use this vulnerability to change the blacklist IP address in the system at will.

EPSS

Процентиль: 26%
0.00089
Низкий

8.8 High

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 8.8
nvd
почти 3 года назад

feiqu-opensource Background Vertical authorization vulnerability exists in IndexController.java. demo users with low permission can perform operations within the permission of the admin super administrator and can use this vulnerability to change the blacklist IP address in the system at will.

EPSS

Процентиль: 26%
0.00089
Низкий

8.8 High

CVSS3

Дефекты

CWE-284