CVE-2022-27958
Published
CVSS v3
5.4
MEDIUM
CVSS v2
5.5
MEDIUM
Affected
1
PROJECT
Description
Insecure permissions configured in the userid parameter at /user/getuserprofile of FEBS-Security v1.0 allows attackers to access and arbitrarily modify users' personal information.
Apply for details and proof of concept of CVE vulnerability.