Beveiligingsadvies

CVE-2022-34774

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-08-22 14:41:59
Laatst bijgewerkt 2024-09-17 03:55:05
Toegewezen door INCD
CVSS-score 6.3
Status PUBLISHED

Beschrijving

Tabit - Arbitrary account modification. One of the endpoints mapped by the tiny URL, was a page where an adversary can modify personal details, such as email addresses and phone numbers of a specific user in a restaurant's loyalty program. Possibly allowing account takeover (the mail can be used to reset password).