Insecure permissions in OneBlog v2.3.4 allows low-level administrators to reset the passwords of high-level administrators who hold greater privileges.
References
Link Resource
https://gitee.com/yadong.zhang/DBlog/issues/I5CB2O Exploit Issue Tracking Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-06-23T12:45:01

Updated: 2022-06-23T12:45:01

Reserved: 2022-06-20T00:00:00


Link: CVE-2022-34012

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-06-23T17:15:15.157

Modified: 2022-06-29T15:11:51.823


Link: CVE-2022-34012

JSON object: View

cve-icon Redhat Information

No data.

CWE