Логотип exploitDog
bind:CVE-2023-7210
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-7210

Количество 3

Количество 3

nvd логотип

CVE-2023-7210

около 2 лет назад

A vulnerability was found in OneNav up to 0.9.33. It has been classified as critical. This affects an unknown part of the file /index.php?c=api of the component API. The manipulation of the argument X-Token leads to improper authentication. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-249765 was assigned to this vulnerability.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-353q-7h99-hf4x

около 2 лет назад

A vulnerability was found in OneNav up to 0.9.33. It has been classified as critical. This affects an unknown part of the file /index.php?c=api of the component API. The manipulation of the argument X-Token leads to improper authentication. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-249765 was assigned to this vulnerability.

CVSS3: 7.3
EPSS: Низкий
fstec логотип

BDU:2024-04260

около 2 лет назад

Уязвимость сценария /index.php?c=api интерфейса программы управления закладками OneNav, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-7210

A vulnerability was found in OneNav up to 0.9.33. It has been classified as critical. This affects an unknown part of the file /index.php?c=api of the component API. The manipulation of the argument X-Token leads to improper authentication. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-249765 was assigned to this vulnerability.

CVSS3: 7.3
0%
Низкий
около 2 лет назад
github логотип
GHSA-353q-7h99-hf4x

A vulnerability was found in OneNav up to 0.9.33. It has been classified as critical. This affects an unknown part of the file /index.php?c=api of the component API. The manipulation of the argument X-Token leads to improper authentication. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-249765 was assigned to this vulnerability.

CVSS3: 7.3
0%
Низкий
около 2 лет назад
fstec логотип
BDU:2024-04260

Уязвимость сценария /index.php?c=api интерфейса программы управления закладками OneNav, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 9.8
0%
Низкий
около 2 лет назад

Уязвимостей на страницу