CVE-2022-25318

MEDIUM

Cerebrate < 1.4 - Incorrect Authorization

Title source: rule
STIX 2.1

Description

An issue was discovered in Cerebrate through 1.4. An incorrect sharing group ACL allowed an unprivileged user to edit and modify sharing groups.

Scores

CVSS v3 4.3
EPSS 0.0015
EPSS Percentile 35.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

Details

CWE
CWE-863
Status published
Products (1)
cerebrate-project/cerebrate < 1.4
Published Feb 18, 2022
Tracked Since Feb 18, 2026