Security Advisory

CVE-2020-15412

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-06-30 13:15:40
Last updated 2024-08-04 13:15:20
Assigner mitre
State PUBLISHED

Description

An issue was discovered in MISP 2.4.128. app/Controller/EventsController.php lacks an event ACL check before proceeding to allow a user to send an event contact form.