PT-2022-14067 · Unknown · Neorazorx/Facturascripts
Published
2022-05-13
·
Updated
2023-07-24
·
CVE-2022-1715
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
neorazorx/facturascripts versions prior to 2022.07
Description
The issue is related to an Account Takeover in the GitHub repository neorazorx/facturascripts. It is caused by improper type casting.
Recommendations
For versions prior to 2022.07, update to version 2022.07 or later to resolve the issue.
Exploit
Fix
Insufficiently Protected Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Neorazorx/Facturascripts