Логотип exploitDog
bind:CVE-2022-22108
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-22108

Количество 2

Количество 2

nvd логотип

CVE-2022-22108

около 4 лет назад

In Daybyday CRM, versions 2.0.0 through 2.2.0 are vulnerable to Missing Authorization. An attacker that has the lowest privileges account (employee type user), can view the absences of all users in the system including administrators. This type of user is not authorized to view this kind of information.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-frxp-xxx8-hrg6

около 4 лет назад

Missing Authorization in DayByDay CRM

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-22108

In Daybyday CRM, versions 2.0.0 through 2.2.0 are vulnerable to Missing Authorization. An attacker that has the lowest privileges account (employee type user), can view the absences of all users in the system including administrators. This type of user is not authorized to view this kind of information.

CVSS3: 4.3
0%
Низкий
около 4 лет назад
github логотип
GHSA-frxp-xxx8-hrg6

Missing Authorization in DayByDay CRM

CVSS3: 4.3
0%
Низкий
около 4 лет назад

Уязвимостей на страницу