Lucene search

K
osvGoogleOSV:CVE-2018-1322
HistoryMar 20, 2018 - 5:29 p.m.

CVE-2018-1322

2018-03-2017:29:00
Google
osv.dev

5.5 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

54.8%

An administrator with user search entitlements in Apache Syncope 1.2.x before 1.2.11, 2.0.x before 2.0.8, and unsupported releases 1.0.x and 1.1.x which may be also affected, can recover sensitive security values using the fiql and orderby parameters.

5.5 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

54.8%