Vulnerability Details CVE-2022-27958
Insecure permissions configured in the userid parameter at /user/getuserprofile of FEBS-Security v1.0 allows attackers to access and arbitrarily modify users' personal information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 31.4%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 5.5
Products affected by CVE-2022-27958
-
cpe:2.3:a:febs-security_project:febs-security:1.0