Количество 3
Количество 3
CVE-2022-41654
An authentication bypass vulnerability exists in the newsletter subscription functionality of Ghost Foundation Ghost 5.9.4. A specially-crafted HTTP request can lead to increased privileges. An attacker can send an HTTP request to trigger this vulnerability.
CVE-2022-41654
An authentication bypass vulnerability exists in the newsletter subscr ...
GHSA-9gh8-wp53-ccc6
ghost vulnerable to unauthorized newsletter modification via improper access controls
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-41654 An authentication bypass vulnerability exists in the newsletter subscription functionality of Ghost Foundation Ghost 5.9.4. A specially-crafted HTTP request can lead to increased privileges. An attacker can send an HTTP request to trigger this vulnerability. | CVSS3: 4.3 | 0% Низкий | около 3 лет назад | |
CVE-2022-41654 An authentication bypass vulnerability exists in the newsletter subscr ... | CVSS3: 4.3 | 0% Низкий | около 3 лет назад | |
GHSA-9gh8-wp53-ccc6 ghost vulnerable to unauthorized newsletter modification via improper access controls | CVSS3: 8.5 | 0% Низкий | около 3 лет назад |
Уязвимостей на страницу