Beveiligingsadvies

CVE-2020-18741

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-07-08 16:29:11
Laatst bijgewerkt 2024-08-04 14:08:29
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Improper Authorization in ThinkSAAS v2.7 allows remote attackers to modify the description of any user's photo via the "photoid%5B%5D" and "photodesc%5B%5D" parameters in the component "index.php?app=photo."