Описание
Insufficient Granularity of Access Control vulnerability in opentext Flipper allows Exploiting Incorrectly Configured Access Control Security Levels. The vulnerability could allow a low privilege user to interact with the backend API without sufficient privileges.
This issue affects Flipper: 3.1.2.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:opentext:flipper:3.1.2:*:*:*:*:*:*:*
EPSS
Процентиль: 16%
0.00051
Низкий
9.1 Critical
CVSS3
Дефекты
CWE-1220
Связанные уязвимости
CVSS3: 9.1
github
4 месяца назад
Insufficient Granularity of Access Control vulnerability in opentext Flipper allows Exploiting Incorrectly Configured Access Control Security Levels. The vulnerability could allow a low privilege user to interact with the backend API without sufficient privileges. This issue affects Flipper: 3.1.2.
EPSS
Процентиль: 16%
0.00051
Низкий
9.1 Critical
CVSS3
Дефекты
CWE-1220