Arnaud COURTY
4 exploits
Active since Feb 2021
Directus 8.0.0-8.8.1 - Unauthenticated Exposure of Sensitive User Information via API
CVSS 7.5
Directus 8.0.0-8.8.1 - Unauthenticated Privilege Escalation via PATCH Role Switch
CVSS 8.8
Directus 8.0.0-8.8.1 - Sensitive Information Exposure via API Endpoint
CVSS 5.3
Directus 8.0.0-8.8.1 - User Enumeration via Password Reset Feature
CVSS 5.3