Vulnerability Details CVE-2023-27095
Insecure Permissions vulnerability found in OpenGoofy Hippo4j v.1.4.3 allows attacker toescalate privileges via the AddUser method of the UserController function in Tenant Management module.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 16.9%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2023-27095
-
cpe:2.3:a:opengoofy:hippo4j:-
-
cpe:2.3:a:opengoofy:hippo4j:0.1.0
-
cpe:2.3:a:opengoofy:hippo4j:0.2.0
-
cpe:2.3:a:opengoofy:hippo4j:0.3.0
-
cpe:2.3:a:opengoofy:hippo4j:0.4.0
-
cpe:2.3:a:opengoofy:hippo4j:0.9.0
-
cpe:2.3:a:opengoofy:hippo4j:1.0.0
-
cpe:2.3:a:opengoofy:hippo4j:1.1.0
-
cpe:2.3:a:opengoofy:hippo4j:1.2.0
-
cpe:2.3:a:opengoofy:hippo4j:1.2.1
-
cpe:2.3:a:opengoofy:hippo4j:1.3.0
-
cpe:2.3:a:opengoofy:hippo4j:1.3.1
-
cpe:2.3:a:opengoofy:hippo4j:1.4.0
-
cpe:2.3:a:opengoofy:hippo4j:1.4.1
-
cpe:2.3:a:opengoofy:hippo4j:1.4.2