Incorrect access control in the importUser function of SpringBlade v4.5.0 allows attackers with low-level privileges to arbitrarily import sensitive user data.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
Incorrect access control in the importUser function of SpringBlade v4.5.0 allows attackers with low-level privileges to arbitrarily import sensitive user data.
How easy to exploit
Severity of consequences
Likelihood of exploitation in next 30 days