8.8
CVE-2024-54818
- EPSS 0.09%
- Veröffentlicht 08.01.2025 19:15:38
- Zuletzt bearbeitet 16.04.2025 15:14:42
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SourceCodester Computer Laboratory Management System 1.0 is vulnerable to Incorrect Access Control. via /php-lms/admin/?page=user/list.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Oretnom23 ≫ Computer Laboratory Management System Version1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.09% | 0.264 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-281 Improper Preservation of Permissions
The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.