CVE-2022-25770 - CERT CVE
ID CVE-2022-25770
Sažetak Mautic allows you to update the application via an upgrade script. The upgrade logic isn't shielded off correctly, which may lead to vulnerable situation. This vulnerability is mitigated by the fact that Mautic needs to be installed in a certain way to be vulnerable.
Reference
CVSS
Base: 7.8
Impact: 5.8
Exploitability:1.4
Pristup
VektorSloženostAutentikacija
LOCAL HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE HIGH HIGH
CVSS vektor CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:H
Zadnje važnije ažuriranje 20-09-2024 - 12:30
Objavljeno 18-09-2024 - 22:15