Описание
Incorrect access control in Mirotalk before commit 9de226 allows attackers to arbitrarily change usernames via sending a crafted roomAction request to the server.
EPSS
Процентиль: 49%
0.00255
Низкий
7.5 High
CVSS3
Дефекты
CWE-346
Связанные уязвимости
CVSS3: 7.5
github
больше 1 года назад
Incorrect access control in Mirotalk before commit 9de226 allows attackers to arbitrarily change usernames via sending a crafted roomAction request to the server.
EPSS
Процентиль: 49%
0.00255
Низкий
7.5 High
CVSS3
Дефекты
CWE-346