Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wccx-mrcg-w55h

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

eZ publish before 3.8.1 does not properly enforce permissions for "content edit Language" when there are four or more languages, which allows remote authenticated users to perform translations into languages that are not listed in a Module Function Limitation policy.

eZ publish before 3.8.1 does not properly enforce permissions for "content edit Language" when there are four or more languages, which allows remote authenticated users to perform translations into languages that are not listed in a Module Function Limitation policy.

EPSS

Процентиль: 37%
0.0016
Низкий

Связанные уязвимости

ubuntu
около 18 лет назад

eZ publish before 3.8.1 does not properly enforce permissions for "content edit Language" when there are four or more languages, which allows remote authenticated users to perform translations into languages that are not listed in a Module Function Limitation policy.

nvd
около 18 лет назад

eZ publish before 3.8.1 does not properly enforce permissions for "content edit Language" when there are four or more languages, which allows remote authenticated users to perform translations into languages that are not listed in a Module Function Limitation policy.

debian
около 18 лет назад

eZ publish before 3.8.1 does not properly enforce permissions for "con ...

EPSS

Процентиль: 37%
0.0016
Низкий