Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Thank_You

#20947of 53,624
11.9Total CVSS
Vulnerabilities · 2
Medium
2
PT-2020-20574
5.4
2020-11-09
Dispatch · Dispatch · CVE-2020-9299
**Name of the Vulnerable Software and Affected Versions** Dispatch (affected versions not specified) **Description** The Dispatch application has a security issue where an authenticated user can exploit XSS vulnerabilities. These vulnerabilities affect the `name` and `description` parameters of Incident Priority, Incident Type, Tag Type, and Incident Filter. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2020-20575
6.5
2020-11-09
Git · Dispatch · CVE-2020-9300
**Name of the Vulnerable Software and Affected Versions** No specific software or versions are mentioned in the provided descriptions. **Description** The issue involves Access Control problems, including allowing regular users to view restricted incidents, user role escalation to admin, users adding themselves as participants in restricted incidents, and users being able to view restricted incidents via the search feature. The risk of exploitation is lowered if the installation follows secure deployment guidelines, as this can only be exploited by an authenticated user. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.