Описание
An issue was discovered in LTOS-Web-Interface in Meinberg LANTIME-Firmware before 6.24.029 MBGID-9343 and 7 before 7.04.008 MBGID-6303. An admin can delete required user accounts (in violation of expected access control).
Уязвимые конфигурации
Конфигурация 1Версия до 6.24.029 (исключая)Версия от 7.0.0 (включая) до 7.04.008 (исключая)
Одно из
cpe:2.3:o:meinbergglobal:lantime_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:meinbergglobal:lantime_firmware:*:*:*:*:*:*:*:*
EPSS
Процентиль: 27%
0.00098
Низкий
6.5 Medium
CVSS3
Дефекты
NVD-CWE-Other
CWE-284
Связанные уязвимости
CVSS3: 6.5
github
около 2 лет назад
An issue was discovered in LTOS-Web-Interface in Meinberg LANTIME-Firmware before 6.24.029 MBGID-9343 and 7 before 7.04.008 MBGID-6303. An admin can delete required user accounts (in violation of expected access control).
EPSS
Процентиль: 27%
0.00098
Низкий
6.5 Medium
CVSS3
Дефекты
NVD-CWE-Other
CWE-284