ZeroHour

CVE-2022-48367

CVSS 3.1
9.8 critical
EPSS
<1%p52
Published
()
Modified
Description

An issue was discovered in eZ Publish Ibexa Kernel before 7.5.28. Access control based on object state is mishandled.

Vendors
ibexa
Products
digital experience platform, ezplatform-http-cache-fastly, fastly, ez platform kernel, kernel
Weakness
CWE-862
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.