Логотип exploitDog
bind:CVE-2020-35577
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-35577

Количество 2

Количество 2

nvd логотип

CVE-2020-35577

больше 4 лет назад

In Endalia Selection Portal before 4.205.0, an Insecure Direct Object Reference (IDOR) allows any authenticated user to download every file uploaded to the platform by changing the value of the file identifier (aka CommonDownload identification number).

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-233g-v6pm-h695

около 3 лет назад

In Endalia Selection Portal before 4.205.0, an Insecure Direct Object Reference (IDOR) allows any authenticated user to download every file uploaded to the platform by changing the value of the file identifier (aka CommonDownload identification number).

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-35577

In Endalia Selection Portal before 4.205.0, an Insecure Direct Object Reference (IDOR) allows any authenticated user to download every file uploaded to the platform by changing the value of the file identifier (aka CommonDownload identification number).

CVSS3: 6.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-233g-v6pm-h695

In Endalia Selection Portal before 4.205.0, an Insecure Direct Object Reference (IDOR) allows any authenticated user to download every file uploaded to the platform by changing the value of the file identifier (aka CommonDownload identification number).

1%
Низкий
около 3 лет назад

Уязвимостей на страницу