9.1
CVE-2022-25402
- EPSS 1.61%
- Veröffentlicht 24.02.2022 15:15:31
- Zuletzt bearbeitet 21.11.2024 06:52:07
- Erkennungen
An incorrect access control issue in HMS v1.0 allows unauthenticated attackers to read and modify all PHP files.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hospital Management System Project ≫ Hospital Management System Version 1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.61% | 0.732 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.1 | 3.9 | 5.2 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
|
| NIST | 6.4 | 10 | 4.9 |
AV:N/AC:L/Au:N/C:P/I:P/A:N
|
https://github.com/dota-st/Vulnerability/blob/master/HMS/HMS.md