An issue was discovered in LIVEBOX... CVE-2022-45177

- AV AC AU C I A
发布: 2024-02-21
修订: 2024-11-21

An issue was discovered in LIVEBOX Collaboration vDesk through v031. An Observable Response Discrepancy can occur under the /api/v1/vdeskintegration/user/isenableuser endpoint, the /api/v1/sharedsearch?search={NAME]+{SURNAME] endpoint, and the /login endpoint. The web application provides different responses to incoming requests in a way that reveals internal state information to an unauthorized actor outside of the intended control sphere.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息