
We found results for “”
CVE-2023-4560
Good to know:

Date: August 27, 2023
Improper Authorization of Index Containing Sensitive Information in GitHub repository omeka/omeka-s prior to 4.0.4.
Language: PHP
Severity Score
Severity Score
Weakness Type (CWE)
Improper Authorization of Index Containing Sensitive Information
CWE-612Top Fix

Upgrade Version
Upgrade to version omeka/omeka-s - dev-file-upload-multiple;omeka/omeka-s - dev-register-non-config-service-names;omeka/omeka-s - dev-iiif-block-layouts;omeka/omeka-s - dev-item-showcase-to-media-embed;omeka/omeka-s - dev-advanced-search-sr-alerts;omeka/omeka-s - no_fix;omeka/omeka-s - dev-search-input-type;omeka/omeka-s - dev-theme-provided-resource-page-block-layouts;omeka/omeka-s - v4.0.4;omeka/omeka-s - dev-set-new-resource-private-settings;omeka/omeka-s - dev-release-4.0;omeka/omeka-s - dev-block-groups-ui
CVSS v3.1
Base Score: |
|
---|---|
Attack Vector (AV): | NETWORK |
Attack Complexity (AC): | LOW |
Privileges Required (PR): | LOW |
User Interaction (UI): | NONE |
Scope (S): | UNCHANGED |
Confidentiality (C): | HIGH |
Integrity (I): | NONE |
Availability (A): | NONE |