CVE Vulnerabilities

CVE-2022-36542

Published: Aug 26, 2022 | Modified: Aug 31, 2022
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An access control issue in the component /ip/admin/ of Edoc-doctor-appointment-system v1.0.1 allows attackers to arbitrarily edit, read, and delete Administrator data.

Affected Software

Name Vendor Start Version End Version
Edoc-doctor-appointment-system Edoc-doctor-appointment-system_project 1.0.1 (including) 1.0.1 (including)

References