Логотип exploitDog
bind:CVE-2021-42337
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-42337

Количество 2

Количество 2

nvd логотип

CVE-2021-42337

около 4 лет назад

The permission control of AIFU cashier management salary query function can be bypassed, thus after obtaining general user’s permission, the remote attacker can access account information except passwords by crafting URL parameters.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-9j29-595f-wvxh

больше 3 лет назад

The permission control of AIFU cashier management salary query function can be bypassed, thus after obtaining general user’s permission, the remote attacker can access account information except passwords by crafting URL parameters.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-42337

The permission control of AIFU cashier management salary query function can be bypassed, thus after obtaining general user’s permission, the remote attacker can access account information except passwords by crafting URL parameters.

CVSS3: 4.3
0%
Низкий
около 4 лет назад
github логотип
GHSA-9j29-595f-wvxh

The permission control of AIFU cashier management salary query function can be bypassed, thus after obtaining general user’s permission, the remote attacker can access account information except passwords by crafting URL parameters.

CVSS3: 4.3
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу