Описание
Profession Fit 5.0.99 Build 44910 allows authorization bypass via a direct request for /api/challenges/{id} and also URLs for eversports, the user-management page, and the plane page.
EPSS
Процентиль: 13%
0.00042
Низкий
5.8 Medium
CVSS3
Дефекты
CWE-425
Связанные уязвимости
CVSS3: 5.8
github
5 месяцев назад
Profession Fit 5.0.99 Build 44910 allows authorization bypass via a direct request for /api/challenges/{id} and also URLs for eversports, the user-management page, and the plane page.
EPSS
Процентиль: 13%
0.00042
Низкий
5.8 Medium
CVSS3
Дефекты
CWE-425