Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-50872

Опубликовано: 16 апр. 2024
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

The API in Accredible Credential.net December 6th, 2023 allows an Insecure Direct Object Reference attack that discloses partial information about certificates and their respective holder. NOTE: the excellium-services.com web page about this issue mentions "Vendor says that it's not a security issue."

EPSS

Процентиль: 51%
0.00284
Низкий

7.5 High

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 7.5
github
почти 2 года назад

The API in Accredible Credential.net December 6th, 2023 allows an Insecure Direct Object Reference attack that discloses partial information about certificates and their respective holder. NOTE: the excellium-services.com web page about this issue mentions "Vendor says that it's not a security issue."

EPSS

Процентиль: 51%
0.00284
Низкий

7.5 High

CVSS3

Дефекты

CWE-200