Логотип exploitDog
bind:CVE-2022-30760
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-30760

Количество 2

Количество 2

nvd логотип

CVE-2022-30760

больше 3 лет назад

An Insecure Direct Object Reference (IDOR) issue in fn2Web in ihb eG FlexNow before 2.04.09.016 allows remote authenticated attackers to obtain sensitive student information (final grades, study courses, degrees) by changing the student ID parameter in the HTTP POST request to the FrontControllerSS endpoint.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-w8gm-v2v6-g83p

больше 3 лет назад

An Insecure Direct Object Reference (IDOR) issue in fn2Web in ihb eG FlexNow before 2.04.09.016 allows remote authenticated attackers to obtain sensitive student information (final grades, study courses, degrees) by changing the student ID parameter in the HTTP POST request to the FrontControllerSS endpoint.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-30760

An Insecure Direct Object Reference (IDOR) issue in fn2Web in ihb eG FlexNow before 2.04.09.016 allows remote authenticated attackers to obtain sensitive student information (final grades, study courses, degrees) by changing the student ID parameter in the HTTP POST request to the FrontControllerSS endpoint.

CVSS3: 4.3
0%
Низкий
больше 3 лет назад
github логотип
GHSA-w8gm-v2v6-g83p

An Insecure Direct Object Reference (IDOR) issue in fn2Web in ihb eG FlexNow before 2.04.09.016 allows remote authenticated attackers to obtain sensitive student information (final grades, study courses, degrees) by changing the student ID parameter in the HTTP POST request to the FrontControllerSS endpoint.

CVSS3: 4.3
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу