9.1
CVSSv3

CVE-2022-0482

Published: 09/03/2022 Updated: 03/06/2022
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 571
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

Exposure of Private Personal Information to an Unauthorized Actor in GitHub repository alextselegidis/easyappointments before 1.4.3.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

easyappointments easyappointments

Exploits

Easy!Appointments versions prior to 143 suffers from an unauthenticated PII disclosure vulnerability ...

Github Repositories

A final project for "Network Security" class at NYCU (National Yang Ming Chiao Tung University, Taiwan). Exploiting a CVE in "EasyAppointments" software.

CVE-2022-0482_exploit A final project for "Network Security" class at NYCU (National Yang Ming Chiao Tung University, Taiwan) Exploiting a CVE in "EasyAppointments" software

Easy!Appointments < 1.4.3 - Unauthenticated PII (events) disclosure

Easy!Appointments PII disclosure Easy!Appointments &lt; 143 - Unauthenticated PII (events) disclosure [EDB-50871] [PacketStorm] [WLB-2022040061] Usage $ ruby exploitrb -h Easy!Appointments &lt; 143 - Unauthenticated PII (events) disclosure Source: githubcom/Acceis/exploit-CVE-2022-0482 Usage: exploitrb &lt;url&gt; [&lt;startDate&gt;