Описание
WeDayCare B.V Ouderapp before v1.1.22 allows attackers to alter the ID value within intercepted calls to gain access to data of other parents and children.
Ссылки
- ProductRelease NotesThird Party Advisory
- ExploitThird Party Advisory
- ProductRelease NotesThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.1.22 (исключая)
cpe:2.3:a:eigen\&wijzer_ouderapp_project:eigen\&wijzer_ouderapp:*:*:*:*:*:iphone_os:*:*
EPSS
Процентиль: 91%
0.06203
Низкий
7.5 High
CVSS3
Дефекты
CWE-639
Связанные уязвимости
CVSS3: 7.5
github
больше 3 лет назад
WeDayCare B.V Ouderapp before v1.1.22 allows attackers to alter the ID value within intercepted calls to gain access to data of other parents and children.
EPSS
Процентиль: 91%
0.06203
Низкий
7.5 High
CVSS3
Дефекты
CWE-639