6.5
CVSSv3

CVE-2022-40036

Published: 26/01/2023 Updated: 01/02/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8

Vulnerability Summary

An issue exists in Rawchen blog-ssm v1.0 allows an malicious user to obtain sensitive user information by bypassing permission checks via the /adminGetUserList component.

Most Upvoted Vulmon Research Post

There is no Researcher post for this vulnerability
Would you like to share something about it? Sign up now to share your knowledge with the community.
Vulnerable Product Search on Vulmon Subscribe to Product

blog-ssm project blog-ssm 1.0

Github Repositories

CVE-2022-40036 An issue was discovered in Rawchen blog-ssm v10 allows an attacker to obtain sensitive user information by bypassing permission checks via the /adminGetUserList component authentication complexity vector not available not available not available confidentiality integrity availability not available not available not available CVSS Score: not