{ "data_version": "4.0", "data_type": "CVE", "data_format": "MITRE", "CVE_data_meta": { "ID": "CVE-2022-4879", "ASSIGNER": "cna@vuldb.com", "STATE": "PUBLIC" }, "description": { "description_data": [ { "lang": "eng", "value": "A vulnerability was found in Forged Alliance Forever up to 3746. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Vote Handler. The manipulation leads to improper authorization. Upgrading to version 3747 is able to address this issue. The patch is named 6880971bd3d73d942384aff62d53058c206ce644. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-217555." }, { "lang": "deu", "value": "In Forged Alliance Forever bis 3746 wurde eine kritische Schwachstelle ausgemacht. Es geht um eine nicht n\u00e4her bekannte Funktion der Komponente Vote Handler. Durch Manipulieren mit unbekannten Daten kann eine improper authorization-Schwachstelle ausgenutzt werden. Ein Aktualisieren auf die Version 3747 vermag dieses Problem zu l\u00f6sen. Der Patch wird als 6880971bd3d73d942384aff62d53058c206ce644 bezeichnet. Als bestm\u00f6gliche Massnahme wird das Einspielen eines Upgrades empfohlen." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "CWE-285 Improper Authorization", "cweId": "CWE-285" } ] } ] }, "affects": { "vendor": { "vendor_data": [ { "vendor_name": "n/a", "product": { "product_data": [ { "product_name": "Forged Alliance Forever", "version": { "version_data": [ { "version_affected": "=", "version_value": "3746" } ] } } ] } } ] } }, "references": { "reference_data": [ { "url": "https://vuldb.com/?id.217555", "refsource": "MISC", "name": "https://vuldb.com/?id.217555" }, { "url": "https://vuldb.com/?ctiid.217555", "refsource": "MISC", "name": "https://vuldb.com/?ctiid.217555" }, { "url": "https://github.com/FAForever/fa/pull/4398", "refsource": "MISC", "name": "https://github.com/FAForever/fa/pull/4398" }, { "url": "https://github.com/FAForever/fa/commit/6880971bd3d73d942384aff62d53058c206ce644", "refsource": "MISC", "name": "https://github.com/FAForever/fa/commit/6880971bd3d73d942384aff62d53058c206ce644" }, { "url": "https://github.com/FAForever/fa/releases/tag/3747", "refsource": "MISC", "name": "https://github.com/FAForever/fa/releases/tag/3747" } ] }, "credits": [ { "lang": "en", "value": "VulDB GitHub Commit Analyzer" } ], "impact": { "cvss": [ { "version": "3.1", "baseScore": 4.6, "vectorString": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L", "baseSeverity": "MEDIUM" }, { "version": "3.0", "baseScore": 4.6, "vectorString": "CVSS:3.0/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L", "baseSeverity": "MEDIUM" }, { "version": "2.0", "baseScore": 4.1, "vectorString": "AV:A/AC:L/Au:S/C:N/I:P/A:P" } ] } }