Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39911
HistoryMar 23, 2023 - 12:27 a.m.

Improper Authorization

2023-03-2300:27:22
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
improper authorization
vulnerable
insecure direct object references
user id
admin
logout

0.001 Low

EPSS

Percentile

32.6%

nilsteampassnet/teampass is vulnerable to Improper Authorization. The vulnerability allows an attacker with low-level privileges to logout everyone out including the admin due to an Insecure Direct Object References (IDOR) via the user ID.

0.001 Low

EPSS

Percentile

32.6%