CVE-2022-25318

MEDIUM

Cerebrate < 1.4 - Incorrect Authorization via Sharing Group ACL

Title source: llm
STIX 2.1

Description

An issue was discovered in Cerebrate through 1.4. An incorrect sharing group ACL allowed an unprivileged user to edit and modify sharing groups.

Scores

CVSS v3 4.3
EPSS 0.0057
EPSS Percentile 42.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

Details

CWE
CWE-863
Status published
Products (1)
cerebrate-project/cerebrate < 1.4
Published Feb 18, 2022
Tracked Since Feb 18, 2026