Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wcr9-pv3r-cx85

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Improper Control of Resource Identifiers in TCExam 14.2.2 allows a remote, authenticated attacker to access test metadata for which they don't have permission.

Improper Control of Resource Identifiers in TCExam 14.2.2 allows a remote, authenticated attacker to access test metadata for which they don't have permission.

EPSS

Процентиль: 35%
0.00144
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-200
CWE-639

Связанные уязвимости

CVSS3: 4.3
nvd
почти 6 лет назад

Improper Control of Resource Identifiers in TCExam 14.2.2 allows a remote, authenticated attacker to access test metadata for which they don't have permission.

EPSS

Процентиль: 35%
0.00144
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-200
CWE-639