CVE-2022-27958

Published
View on NVD ↗
CVSS v3
5.4
MEDIUM
CVSS v2
5.5
MEDIUM
Affected
1
PROJECT

Description

Insecure permissions configured in the userid parameter at /user/getuserprofile of FEBS-Security v1.0 allows attackers to access and arbitrarily modify users' personal information.

Apply for details and proof of concept of CVE vulnerability.
GitHubGitHub