PT-2024-11598 · Unknown · Profilegrid

István Márton

·

Published

2024-01-08

·

Updated

2024-01-11

·

CVE-2022-36352

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ProfileGrid – User Profiles, Memberships, Groups and Communities versions through 5.0.3
Description The issue is related to a Missing Authorization vulnerability. This means that certain actions or data may be accessible without the necessary permissions, potentially leading to unauthorized access or modifications.
Recommendations For versions through 5.0.3, update to a version later than 5.0.3 to resolve the issue. At the moment, there is no information about other specific mitigation measures for this vulnerability.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2022-36352

Affected Products

Profilegrid