Логотип exploitDog
bind:CVE-2025-0739
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-0739

Количество 2

Количество 2

nvd логотип

CVE-2025-0739

около 1 года назад

An Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This vulnerability allows an authenticated attacker to show subscription's information of others users by changing the "SUSCBRIPTION_ID" param of the endpoint "/demos/embedai/subscriptions/show/<SUSCBRIPTION_ID>".

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-vwj2-w4fq-pg78

около 1 года назад

An Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This vulnerability allows an authenticated attacker to show subscription's information of others users by changing the "SUSCBRIPTION_ID" param of the endpoint "/demos/embedai/subscriptions/show/<SUSCBRIPTION_ID>".

CVSS3: 8.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-0739

An Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This vulnerability allows an authenticated attacker to show subscription's information of others users by changing the "SUSCBRIPTION_ID" param of the endpoint "/demos/embedai/subscriptions/show/<SUSCBRIPTION_ID>".

CVSS3: 8.6
0%
Низкий
около 1 года назад
github логотип
GHSA-vwj2-w4fq-pg78

An Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This vulnerability allows an authenticated attacker to show subscription's information of others users by changing the "SUSCBRIPTION_ID" param of the endpoint "/demos/embedai/subscriptions/show/<SUSCBRIPTION_ID>".

CVSS3: 8.6
0%
Низкий
около 1 года назад

Уязвимостей на страницу