Incorrect implementation in authentication protocol in M-Files Client before 22.5.11356.0 allows high privileged user to get other users tokens to another resource.
Metrics
Affected Vendors & Products
References
History
Wed, 28 Aug 2024 10:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
MITRE
Status: PUBLISHED
Assigner: M-Files Corporation
Published: 2022-12-30T13:31:21.079Z
Updated: 2024-08-28T20:05:34.948Z
Reserved: 2022-12-30T12:44:28.230Z
Link: CVE-2022-4861
Vulnrichment
Updated: 2024-08-03T01:55:45.880Z
NVD
Status : Modified
Published: 2022-12-30T14:15:08.963
Modified: 2024-11-21T07:36:05.410
Link: CVE-2022-4861
Redhat
No data.