Enhancement: misconfiguration/unauthorized-plastic-scm.yaml by mp

patch-1
MostInterestingBotInTheWorld 2022-05-23 12:16:01 -04:00
parent bf7efa3b02
commit a4a2addf20
1 changed files with 9 additions and 1 deletions

View File

@ -1,11 +1,17 @@
id: unauthorized-plastic-scm
info:
name: Unauthorized Access to Plastic Admin Console
name: Plastic Admin Console - Authentication Bypass
author: DEENA
severity: critical
description: A Plastic Admin console was discovered.
reference:
- https://infosecwriteups.com/story-of-google-hall-of-fame-and-private-program-bounty-worth-53559a95c468
classification:
cvss-metrics: 10.0, AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
cvss-score:
cve-id:
cwe-id: CWE-288
tags: plastic
requests:
@ -48,3 +54,5 @@ requests:
- type: status
status:
- 200
# Enhanced by mp on 2022/05/23