High
CVSS 7.5
Overview
Geeklog before 1.3.11sr3 allows remote attackers to bypass intended access restrictions and comment on an arbitrary story or topic by guessing the story ID.
Geeklog before 1.3.11sr3 allows remote attackers to bypass intended access restr...
Geeklog before 1.3.11sr3 allows remote attackers to bypass intended access restrictions and comment on an arbitrary story or topic by guessing the story ID.
This vulnerability is rated 🟠 HIGH.
Recommended actions: