PT-2023-11626 · Unknown · Depositgame
Messi-Q
·
Publicado
2023-03-16
·
Atualizado
2025-02-26
·
CVE-2020-22647
CVSS v3.1
9.1
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
DepositGame version 1.0
Description
An issue in DepositGame allows an attacker to gain sensitive information via the
GetBonusWithdraw and withdraw functions.Recommendations
For DepositGame version 1.0, consider disabling the
GetBonusWithdraw and withdraw functions until a patch is available. Restrict access to these functions to minimize the risk of exploitation.Exploit
Correção
Exposure of Resource to Wrong Sphere
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Depositgame