Lucene search

K
huntrLujiefsi47C53B93-0B26-4752-879F-9E9BD09AD371
HistoryApr 03, 2023 - 12:35 p.m.

Users who joined later can see the data of deleted users

2023-04-0312:35:36
lujiefsi
www.huntr.dev
12
proof of concept
admin
user creation
group access
bug bounty

EPSS

0.001

Percentile

30.8%

Proof of Concept

1 admin create a user, named as user1

2 user1 login and create Inlong Group

3 admin delete user1

4 admin create aonther user, whose name is also user1

5 user1 login and can see the Inlong Group created by old user1

EPSS

0.001

Percentile

30.8%

Related for 47C53B93-0B26-4752-879F-9E9BD09AD371