Описание
An issue was discovered in eTimeTrackLite Web thru 12.0 (20250704). There is a permission control flaw that allows unauthorized attackers to access specific routes and modify database connection configurations.
EPSS
Процентиль: 14%
0.00045
Низкий
9.1 Critical
CVSS3
Дефекты
CWE-284
Связанные уязвимости
CVSS3: 9.1
github
3 месяца назад
An issue was discovered in eTimeTrackLite Web thru 12.0 (20250704). There is a permission control flaw that allows unauthorized attackers to access specific routes and modify database connection configurations.
EPSS
Процентиль: 14%
0.00045
Низкий
9.1 Critical
CVSS3
Дефекты
CWE-284