Описание
A vulnerability has been discovered in Diño Physics School Assistant version 2.3. The vulnerability impacts an unidentified code within the file /classes/Users.php?f=save. Manipulating the argument id can result in improper authorization.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:dino_physics_school_assistant_project:dino_physics_school_assistant:2.3:*:*:*:*:*:*:*
EPSS
Процентиль: 65%
0.00501
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-863
EPSS
Процентиль: 65%
0.00501
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-863