CVE-2022-0688
MEDIUMPackagist microweber/microweber <1.2.11 - Info Disclosure
Title source: llmDescription
Business Logic Errors in Packagist microweber/microweber prior to 1.2.11.
References (2)
Core 2
Core References
Exploit, Issue Tracking, Patch, Third Party Advisory x_refsource_confirm
https://huntr.dev/bounties/051ec6d4-0b0a-41bf-9ded-27813037c9c9
Patch, Third Party Advisory x_refsource_misc
https://github.com/microweber/microweber/commit/a41f0fddaf08ff12b2b82506b1ca9490c93ab605
Scores
CVSS v3
4.9
EPSS
0.0033
EPSS Percentile
56.1%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
Details
CWE
CWE-840
Status
published
Products (2)
microweber/microweber
< 1.2.11
microweber/microweber
0 - 1.2.11Packagist
Published
Feb 20, 2022
Tracked Since
Feb 18, 2026