CVE-2022-3327

Missing Authentication for Critical Function in GitHub repository ikus060/rdiffweb prior to 2.5.0a6.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ikus-soft:rdiffweb:*:*:*:*:*:*:*:*
cpe:2.3:a:ikus-soft:rdiffweb:2.4.10:*:*:*:*:*:*:*
cpe:2.3:a:ikus-soft:rdiffweb:2.5.0:alpha1:*:*:*:*:*:*
cpe:2.3:a:ikus-soft:rdiffweb:2.5.0:alpha2:*:*:*:*:*:*
cpe:2.3:a:ikus-soft:rdiffweb:2.5.0:alpha3:*:*:*:*:*:*
cpe:2.3:a:ikus-soft:rdiffweb:2.5.0:alpha4:*:*:*:*:*:*
cpe:2.3:a:ikus-soft:rdiffweb:2.5.0:alpha5:*:*:*:*:*:*

History

24 Oct 2022, 12:58

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-306
References (MISC) https://github.com/ikus060/rdiffweb/commit/f2a32f2a9f3fb8be1a9432ac3d81d3aacdb13095 - (MISC) https://github.com/ikus060/rdiffweb/commit/f2a32f2a9f3fb8be1a9432ac3d81d3aacdb13095 - Patch, Third Party Advisory
References (CONFIRM) https://huntr.dev/bounties/02207c8f-2b15-4a31-a86a-74fd2fca0ed1 - (CONFIRM) https://huntr.dev/bounties/02207c8f-2b15-4a31-a86a-74fd2fca0ed1 - Permissions Required, Third Party Advisory
CPE cpe:2.3:a:ikus-soft:rdiffweb:2.5.0:alpha1:*:*:*:*:*:*
cpe:2.3:a:ikus-soft:rdiffweb:*:*:*:*:*:*:*:*
cpe:2.3:a:ikus-soft:rdiffweb:2.5.0:alpha3:*:*:*:*:*:*
cpe:2.3:a:ikus-soft:rdiffweb:2.5.0:alpha2:*:*:*:*:*:*
cpe:2.3:a:ikus-soft:rdiffweb:2.5.0:alpha5:*:*:*:*:*:*
cpe:2.3:a:ikus-soft:rdiffweb:2.4.10:*:*:*:*:*:*:*
cpe:2.3:a:ikus-soft:rdiffweb:2.5.0:alpha4:*:*:*:*:*:*

20 Oct 2022, 04:02

Type Values Removed Values Added
New CVE

Information

Published : 2022-10-20 00:15

Updated : 2024-02-04 22:51


NVD link : CVE-2022-3327

Mitre link : CVE-2022-3327

CVE.ORG link : CVE-2022-3327


JSON object : View

Products Affected

ikus-soft

  • rdiffweb
CWE
CWE-306

Missing Authentication for Critical Function