Описание
A race condition exists in Audited 4.0.0 to 5.3.3 that can result in an authenticated user to cause audit log entries to be attributed to another user.
Ссылки
- Third Party Advisory
- Issue TrackingPatchVendor Advisory
- Patch
- Patch
- Vendor Advisory
- Third Party Advisory
- Third Party Advisory
- Issue TrackingPatchVendor Advisory
- Patch
- Patch
- Vendor Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 4.0.0 (включая) до 5.3.3 (исключая)
cpe:2.3:a:collectiveidea:audited:*:*:*:*:*:*:*:*
EPSS
Процентиль: 76%
0.00933
Низкий
3.1 Low
CVSS3
Дефекты
CWE-362
CWE-362
Связанные уязвимости
CVSS3: 3.1
redhat
около 2 лет назад
A race condition exists in Audited 4.0.0 to 5.3.3 that can result in an authenticated user to cause audit log entries to be attributed to another user.
EPSS
Процентиль: 76%
0.00933
Низкий
3.1 Low
CVSS3
Дефекты
CWE-362
CWE-362