Логотип exploitDog
bind:CVE-2022-42751
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-42751

Количество 2

Количество 2

nvd логотип

CVE-2022-42751

больше 3 лет назад

CandidATS version 3.0.0 allows an external attacker to elevate privileges in the application. This is possible because the application suffers from CSRF. This allows to persuade an administrator to create a new account with administrative permissions.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3fq7-mmjq-fv4x

больше 3 лет назад

CandidATS version 3.0.0 allows an external attacker to elevate privileges in the application. This is possible because the application suffers from CSRF. This allows to persuade an administrator to create a new account with administrative permissions.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-42751

CandidATS version 3.0.0 allows an external attacker to elevate privileges in the application. This is possible because the application suffers from CSRF. This allows to persuade an administrator to create a new account with administrative permissions.

CVSS3: 8.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3fq7-mmjq-fv4x

CandidATS version 3.0.0 allows an external attacker to elevate privileges in the application. This is possible because the application suffers from CSRF. This allows to persuade an administrator to create a new account with administrative permissions.

CVSS3: 8.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу