ZeroHour

CVE-2022-29858

PoC
CVSS 3.1
4.3 medium
EPSS
1%p68
Published
()
Modified
Description

Silverstripe silverstripe/assets through 1.10 is vulnerable to improper access control that allows protected images to be published by changing an existing image short code on website content.

Vendors
silverstripe
Products
assets
Weakness
CWE-287
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.