Логотип exploitDog
bind:CVE-2022-45180
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-45180

Количество 2

Количество 2

nvd логотип

CVE-2022-45180

почти 3 года назад

An issue was discovered in LIVEBOX Collaboration vDesk through v018. Broken Access Control exists under the /api/v1/vdesk_{DOMAIN]/export endpoint. A malicious user, authenticated to the product without any specific privilege, can use the API for exporting information about all users of the system (an operation intended to only be available to the system administrator).

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-m9j2-ffm7-xfgg

почти 3 года назад

An issue was discovered in LIVEBOX Collaboration vDesk through v018. Broken Access Control exists under the /api/v1/vdesk_{DOMAIN]/export endpoint. A malicious user, authenticated to the product without any specific privilege, can use the API for exporting information about all users of the system (an operation intended to only be available to the system administrator).

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-45180

An issue was discovered in LIVEBOX Collaboration vDesk through v018. Broken Access Control exists under the /api/v1/vdesk_{DOMAIN]/export endpoint. A malicious user, authenticated to the product without any specific privilege, can use the API for exporting information about all users of the system (an operation intended to only be available to the system administrator).

CVSS3: 6.5
0%
Низкий
почти 3 года назад
github логотип
GHSA-m9j2-ffm7-xfgg

An issue was discovered in LIVEBOX Collaboration vDesk through v018. Broken Access Control exists under the /api/v1/vdesk_{DOMAIN]/export endpoint. A malicious user, authenticated to the product without any specific privilege, can use the API for exporting information about all users of the system (an operation intended to only be available to the system administrator).

CVSS3: 6.5
0%
Низкий
почти 3 года назад

Уязвимостей на страницу