Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wf9v-5m62-rw7r

Опубликовано: 03 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

In Shopizer versions 2.0 to 2.17.0 a regular admin can permanently delete a superadmin (although this cannot happen according to the documentation) via Insecure Direct Object Reference (IDOR) vulnerability.

In Shopizer versions 2.0 to 2.17.0 a regular admin can permanently delete a superadmin (although this cannot happen according to the documentation) via Insecure Direct Object Reference (IDOR) vulnerability.

EPSS

Процентиль: 50%
0.00271
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-639

Связанные уязвимости

CVSS3: 6.5
nvd
почти 4 года назад

In Shopizer versions 2.0 to 2.17.0 a regular admin can permanently delete a superadmin (although this cannot happen according to the documentation) via Insecure Direct Object Reference (IDOR) vulnerability.

EPSS

Процентиль: 50%
0.00271
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-639