Логотип exploitDog
bind:CVE-2023-32749
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-32749

Количество 2

Количество 2

nvd логотип

CVE-2023-32749

больше 2 лет назад

Pydio Cells allows users by default to create so-called external users in order to share files with them. By modifying the HTTP request sent when creating such an external user, it is possible to assign the new user arbitrary roles. By assigning all roles to a newly created user, access to all cells and non-personal workspaces is granted.

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-rm22-vh4p-35m7

больше 2 лет назад

Pydio Cells allows users by default to create so-called external users in order to share files with them. By modifying the HTTP request sent when creating such an external user, it is possible to assign the new user arbitrary roles. By assigning all roles to a newly created user, access to all cells and non-personal workspaces is granted.

CVSS3: 8.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-32749

Pydio Cells allows users by default to create so-called external users in order to share files with them. By modifying the HTTP request sent when creating such an external user, it is possible to assign the new user arbitrary roles. By assigning all roles to a newly created user, access to all cells and non-personal workspaces is granted.

CVSS3: 8.8
45%
Средний
больше 2 лет назад
github логотип
GHSA-rm22-vh4p-35m7

Pydio Cells allows users by default to create so-called external users in order to share files with them. By modifying the HTTP request sent when creating such an external user, it is possible to assign the new user arbitrary roles. By assigning all roles to a newly created user, access to all cells and non-personal workspaces is granted.

CVSS3: 8.8
45%
Средний
больше 2 лет назад

Уязвимостей на страницу