Описание
HumHub is an open-source social network kit written in PHP. Prior to HumHub version 1.10.3 or 1.9.3, it could be possible for registered users to become unauthorized members of private Spaces. Versions 1.10.3 and 1.9.3 contain a patch for this issue.
Ссылки
- PatchThird Party Advisory
- Release NotesThird Party Advisory
- Release NotesThird Party Advisory
- ExploitThird Party Advisory
- ExploitIssue TrackingPatchThird Party Advisory
- PatchThird Party Advisory
- Release NotesThird Party Advisory
- Release NotesThird Party Advisory
- ExploitThird Party Advisory
- ExploitIssue TrackingPatchThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.9.3 (исключая)Версия от 1.10.0 (включая) до 1.10.3 (исключая)
Одно из
cpe:2.3:a:humhub:humhub:*:*:*:*:*:*:*:*
cpe:2.3:a:humhub:humhub:*:*:*:*:*:*:*:*
EPSS
Процентиль: 56%
0.00332
Низкий
6.5 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-285
CWE-862
EPSS
Процентиль: 56%
0.00332
Низкий
6.5 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-285
CWE-862