Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39402
HistoryFeb 24, 2023 - 9:30 a.m.

Privilege Escalation

2023-02-2409:30:38
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8
apache sling
i18n support
privilege escalation
vulnerability
unauthorized actions

0.001 Low

EPSS

Percentile

22.9%

Apache Sling I18N Support is vulnerable to Privilege Escalation. The vulnerability is due to translations being spread across the whole product, an attacker with content author permission can create an i18n dictionary which replaces button texts, resulting in the attacker tricking a user to click a link to perform unauthorized actions.

0.001 Low

EPSS

Percentile

22.9%

Related for VERACODE:39402