Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

redhat логотип

CVE-2020-25711

почти 6 лет назад

A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations like shutting down the server without the ADMIN role.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2020-25711

больше 5 лет назад

A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations like shutting down the server without the ADMIN role.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-8674-26jc-wh98

больше 4 лет назад

Improper Access Control in infinispan-server-runtime

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2020-25711

A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations like shutting down the server without the ADMIN role.

CVSS3: 5.9
1%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-25711

A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations like shutting down the server without the ADMIN role.

CVSS3: 6.5
1%
Низкий
больше 5 лет назад
github логотип
GHSA-8674-26jc-wh98

Improper Access Control in infinispan-server-runtime

CVSS3: 6.5
1%
Низкий
больше 4 лет назад

Уязвимостей на страницу