Update CVE-2022-4806.json

This commit is contained in:
Ben Harvie 2023-03-02 01:11:58 +00:00 committed by GitHub
parent 179cb4b135
commit d0cb1732ca
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -3,7 +3,7 @@
"ASSIGNER": "security@huntr.dev",
"ID": "CVE-2022-4806",
"STATE": "PUBLIC",
"TITLE": "Improper Access Control in usememos/memos"
"TITLE": "Authorization Bypass Through User-Controlled Key in usememos/memos"
},
"affects": {
"vendor": {
@ -36,7 +36,7 @@
"description_data": [
{
"lang": "eng",
"value": "Improper Access Control in GitHub repository usememos/memos prior to 0.9.1."
"value": "Authorization Bypass Through User-Controlled Key in GitHub repository usememos/memos prior to 0.9.1."
}
]
},
@ -62,7 +62,7 @@
"description": [
{
"lang": "eng",
"value": "CWE-284 Improper Access Control"
"value": "CWE-639 Authorization Bypass Through User-Controlled Key"
}
]
}
@ -86,4 +86,4 @@
"advisory": "2c7101bc-e6d8-4cd0-9003-bc8d86f4e4be",
"discovery": "EXTERNAL"
}
}
}