Описание
An Incorrect Access Control vulnerability was found in /music/ajax.php?action=delete_genre in Kashipara Music Management System v1.0. This vulnerability allows an unauthenticated attacker to delete the valid music genre entries.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:lopalopa:music_management_system:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 24%
0.00079
Низкий
5.9 Medium
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-284
Связанные уязвимости
CVSS3: 5.9
github
больше 1 года назад
An Incorrect Access Control vulnerability was found in /music/ajax.php?action=delete_genre in Kashipara Music Management System v1.0. This vulnerability allows an unauthenticated attacker to delete the valid music genre entries.
EPSS
Процентиль: 24%
0.00079
Низкий
5.9 Medium
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-284