Логотип exploitDog
bind:CVE-2024-38446
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-38446

Количество 2

Количество 2

nvd логотип

CVE-2024-38446

больше 1 года назад

NATO NCI ANET 3.4.1 mishandles report ownership. A user can create a report and, despite the restrictions imposed by the UI, change the author of that report to an arbitrary user (without their consent or knowledge) via a modified UUID in a POST request.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xfp3-mm6f-4fw4

больше 1 года назад

NATO NCI ANET 3.4.1 mishandles report ownership. A user can create a report and, despite the restrictions imposed by the UI, change the author of that report to an arbitrary user (without their consent or knowledge) via a modified UUID in a POST request.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-38446

NATO NCI ANET 3.4.1 mishandles report ownership. A user can create a report and, despite the restrictions imposed by the UI, change the author of that report to an arbitrary user (without their consent or knowledge) via a modified UUID in a POST request.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-xfp3-mm6f-4fw4

NATO NCI ANET 3.4.1 mishandles report ownership. A user can create a report and, despite the restrictions imposed by the UI, change the author of that report to an arbitrary user (without their consent or knowledge) via a modified UUID in a POST request.

CVSS3: 6.5
0%
Низкий
больше 1 года назад

Уязвимостей на страницу