7.5
CVE-2023-49545
- EPSS 0.3%
- Veröffentlicht 01.03.2024 22:15:47
- Zuletzt bearbeitet 28.03.2025 14:33:00
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
A directory listing vulnerability in Customer Support System v1 allows attackers to list directories and sensitive files within the application without requiring authorization.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Oretnom23 ≫ Customer Support System Version1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.3% | 0.529 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
CWE-284 Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.