Описание
An Incorrect Access Control vulnerability was found in /music/ajax.php?action=delete_playlist in Kashipara Music Management System v1.0. This vulnerability allows an unauthenticated attacker to delete the valid music playlist entries.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:lopalopa:music_management_system:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 54%
0.00314
Низкий
9.8 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-284
Связанные уязвимости
CVSS3: 9.8
github
больше 1 года назад
An Incorrect Access Control vulnerability was found in /music/ajax.php?action=delete_playlist in Kashipara Music Management System v1.0. This vulnerability allows an unauthenticated attacker to delete the valid music playlist entries.
EPSS
Процентиль: 54%
0.00314
Низкий
9.8 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-284