Beveiligingsadvies

CVE-2022-35487

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-08-08 13:51:36
Laatst bijgewerkt 2024-08-03 09:36:44
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Zammad 5.2.0 suffers from Incorrect Access Control. Zammad did not correctly perform authorization on certain attachment endpoints. This could be abused by an unauthenticated attacker to gain access to attachments, such as emails or attached files.