PT-2023-11626 · Unknown · Depositgame

Messi-Q

·

Publicado

2023-03-16

·

Atualizado

2025-02-26

·

CVE-2020-22647

CVSS v3.1

9.1

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions DepositGame version 1.0
Description An issue in DepositGame allows an attacker to gain sensitive information via the GetBonusWithdraw and withdraw functions.
Recommendations For DepositGame version 1.0, consider disabling the GetBonusWithdraw and withdraw functions until a patch is available. Restrict access to these functions to minimize the risk of exploitation.

Exploit

Correção

Exposure of Resource to Wrong Sphere

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2020-22647

Produtos afetados

Depositgame