Описание
Doctor's Appointment System1.0 is vulnerable to Incorrect Access Control via edoc/patient/settings.php. The settings.php is affected by Broken Access Control (IDOR) via id= parameter.
Ссылки
- Not ApplicableURL Repurposed
- Third Party Advisory
- Product
- Not ApplicableURL Repurposed
- Third Party Advisory
- Product
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:doctor\'s_appointment_system_project:doctor\'s_appointment_system:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 61%
0.00412
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-639
Связанные уязвимости
CVSS3: 9.8
github
больше 3 лет назад
Doctor's Appointment System1.0 is vulnerable to Incorrect Access Control via edoc/patient/settings.php. The settings.php is affected by Broken Access Control (IDOR) via id= parameter.
EPSS
Процентиль: 61%
0.00412
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-639