Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-4843

Опубликовано: 16 мая 2024
Источник: nvd
CVSS3: 4.3
EPSS Низкий

Описание

ePO doesn't allow a regular privileged user to delete tasks or assignments. Insecure direct object references that allow a least privileged user to manipulate the client task and client task assignments, hence escalating his/her privilege.

EPSS

Процентиль: 45%
0.00226
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-639

Связанные уязвимости

CVSS3: 4.3
github
больше 1 года назад

ePO doesn't allow a regular privileged user to delete tasks or assignments. Insecure direct object references that allow a least privileged user to manipulate the client task and client task assignments, hence escalating his/her privilege.

EPSS

Процентиль: 45%
0.00226
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-639