Описание
In Simple Exam Reviewer Management System v1.0 the User List function has improper access control that allows low privileged users to modify user permissions to higher privileges.
Ссылки
- ExploitThird Party Advisory
- Product
- ExploitThird Party Advisory
- Product
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:simple_exam_reviewer_management_system_project:simple_exam_reviewer_management_system:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 32%
0.00125
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-425
CWE-425
Связанные уязвимости
CVSS3: 6.5
github
больше 3 лет назад
In Simple Exam Reviewer Management System v1.0 the User List function has improper access control that allows low privileged users to modify user permissions to higher privileges.
EPSS
Процентиль: 32%
0.00125
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-425
CWE-425