Security Advisory

CVE-2022-27958

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-04-10 21:01:38
Last updated 2024-08-03 05:41:11
Assigner mitre
State PUBLISHED

Description

Insecure permissions configured in the userid parameter at /user/getuserprofile of FEBS-Security v1.0 allows attackers to access and arbitrarily modify users personal information.