Improper Access Control in GitHub repository answerdev/answer prior to 1.0.4.
References
Link | Resource |
---|---|
https://huntr.dev/bounties/35a0e12f-1d54-4fc0-8779-6a4949b7c434 | Exploit Patch Third Party Advisory |
https://github.com/answerdev/answer/commit/c1fa2b13f6b547b96da60b23350bbe2b29de542d | Patch |
http://packetstormsecurity.com/files/171733/Answerdev-1.0.3-Account-Takeover.html |
Configurations
History
06 Apr 2023, 17:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
CWE | CWE-284 |
Information
Published : 2023-02-08 08:15
Updated : 2023-04-06 17:15
NVD link : CVE-2023-0744
Mitre link : CVE-2023-0744
JSON object : View
Products Affected
answer
- answer
CWE
CWE-284
Improper Access Control