Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x45p-6x9h-wr36

Опубликовано: 21 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 5.1
CVSS3: 5.5

Описание

A vulnerability was found in code-projects Human Resource Management System 1.0.1 and classified as critical. This issue affects the function Index of the file \handler\Account.go. The manipulation of the argument user_cookie leads to improper authorization. The exploit has been disclosed to the public and may be used.

A vulnerability was found in code-projects Human Resource Management System 1.0.1 and classified as critical. This issue affects the function Index of the file \handler\Account.go. The manipulation of the argument user_cookie leads to improper authorization. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 41%
0.00189
Низкий

5.1 Medium

CVSS4

5.5 Medium

CVSS3

Дефекты

CWE-266
CWE-862

Связанные уязвимости

CVSS3: 5.5
nvd
11 месяцев назад

A vulnerability was found in code-projects Human Resource Management System 1.0.1 and classified as critical. This issue affects the function Index of the file \handler\Account.go. The manipulation of the argument user_cookie leads to improper authorization. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 41%
0.00189
Низкий

5.1 Medium

CVSS4

5.5 Medium

CVSS3

Дефекты

CWE-266
CWE-862