app/Controller/UsersController.php in MISP prior to 2.4.164 allows malicious users to discover role names (this is information that only the site admin should have).
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
misp-project malware information sharing platform |