Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xjc5-m98p-6f2c

Опубликовано: 28 нояб. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

Improperly calculated effective permissions in M-Files Server versions 23.9 and 23.10 and 23.11 before 23.11.13168.7 could produce a faulty result if an object used a specific configuration of metadata-driven permissions.

Improperly calculated effective permissions in M-Files Server versions 23.9 and 23.10 and 23.11 before 23.11.13168.7 could produce a faulty result if an object used a specific configuration of metadata-driven permissions.

EPSS

Процентиль: 15%
0.0005
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-281

Связанные уязвимости

CVSS3: 5.4
nvd
около 2 лет назад

Under rare conditions, the effective permissions of an object might be incorrectly calculated if the object has a specific configuration of metadata-driven permissions in M-Files Server versions 23.9, 23.10, and 23.11 before 23.11.13168.7, potentially enabling unauthorized access to the object.

EPSS

Процентиль: 15%
0.0005
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-281