kimai2 is vulnerable to Improper Access Control
References
Link | Resource |
---|---|
https://huntr.dev/bounties/a0c438fb-c8e1-40cf-acc6-c8a532b80b93 | Exploit Patch Third Party Advisory |
https://github.com/kevinpapst/kimai2/commit/ff9acab0fc81f0e9490462739ef15fe4ab028ea5 | Patch Third Party Advisory |
Configurations
Information
Published : 2021-12-01 03:15
Updated : 2022-08-05 04:31
NVD link : CVE-2021-3992
Mitre link : CVE-2021-3992
JSON object : View
CWE
CWE-639
Authorization Bypass Through User-Controlled Key
Products Affected
kimai2_project
- kimai2