Missing Authorization vulnerability in Betheme
CVE-2022-45352
4.3MEDIUM
Summary
A missing authorization vulnerability has been identified in Muffingroup's Betheme, impacting versions from n/a up to 26.6.1. This issue can allow unauthorized users to gain access to restricted areas of the application, potentially compromising sensitive data. Proper access control mechanisms are essential to prevent exploitation of this vulnerability and safeguard against unauthorized access.
Affected Version(s)
Betheme <= 26.6.1
References
CVSS V3.1
Score:
4.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Dave Jong (Patchstack)