Логотип exploitDog
bind:CVE-2023-24834
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-24834

Количество 2

Количество 2

nvd логотип

CVE-2023-24834

почти 3 года назад

WisdomGarden Tronclass has improper access control when uploading file. An authenticated remote attacker with general user privilege can exploit this vulnerability to access files belonging to other users by modifying the file ID within URL.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-wfhg-rx29-5vjf

почти 3 года назад

WisdomGarden Tronclass has improper access control when uploading file. An authenticated remote attacker with general user privilege can exploit this vulnerability to access files belonging to other users by modifying the file ID within URL.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-24834

WisdomGarden Tronclass has improper access control when uploading file. An authenticated remote attacker with general user privilege can exploit this vulnerability to access files belonging to other users by modifying the file ID within URL.

CVSS3: 6.5
0%
Низкий
почти 3 года назад
github логотип
GHSA-wfhg-rx29-5vjf

WisdomGarden Tronclass has improper access control when uploading file. An authenticated remote attacker with general user privilege can exploit this vulnerability to access files belonging to other users by modifying the file ID within URL.

CVSS3: 6.5
0%
Низкий
почти 3 года назад

Уязвимостей на страницу