In Eigen NLP 3.10.1, a lack of access...... CVE-2021-38617

6.5 AV AC AU C I A
发布: 2021-09-07
修订: 2024-11-21

In Eigen NLP 3.10.1, a lack of access control on the /auth/v1/user/ user creation endpoint allows a standard user to create a super user account with a defined password. This directly leads to privilege escalation.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息