Update CVE-2023-1463.json

This commit is contained in:
Ben Harvie 2023-04-26 08:11:26 -07:00 committed by GitHub
parent e2b9d0a632
commit b0e30e2017
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -3,7 +3,7 @@
"ASSIGNER": "security@huntr.dev",
"ID": "CVE-2023-1463",
"STATE": "PUBLIC",
"TITLE": "Improper Authorization in nilsteampassnet/teampass"
"TITLE": "Authorization Bypass Through User-Controlled Key in nilsteampassnet/teampass"
},
"affects": {
"vendor": {
@ -36,7 +36,7 @@
"description_data": [
{
"lang": "eng",
"value": "Improper Authorization in GitHub repository nilsteampassnet/teampass prior to 3.0.0.23."
"value": "Authorization Bypass Through User-Controlled Key in GitHub repository nilsteampassnet/teampass prior to 3.0.0.23."
}
]
},
@ -62,7 +62,7 @@
"description": [
{
"lang": "eng",
"value": "CWE-285 Improper Authorization"
"value": "CWE-639 Authorization Bypass Through User-Controlled Key"
}
]
}
@ -86,4 +86,4 @@
"advisory": "f6683c3b-a0f2-4615-b639-1920c8ae12e6",
"discovery": "EXTERNAL"
}
}
}