ZeroHour

CVE-2017-17708

PoC
CVSS 3.0
4.3 medium
EPSS
<1%p46
Published
()
Modified
Description

Because of insufficient authorization checks it is possible for any authenticated user to change profile data of other users in Pleasant Password Server before 7.8.3.

Vendors
pleasantsolutions
Products
pleasant password server
Weakness
CWE-863
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.