CVE-2022-48329 Information
Feb 22, 2023
cve
Description
MISP before 2.4.166 unsafely allows users to use the order parameter related to app/Model/Attribute.php app/Model/GalaxyCluster.php app/Model/Workflow.php and app/Plugin/Assets/models/behaviors/LogableBehavior.php.
Reference
https://github.com/MISP/MISP/compare/v2.4.165…v2.4.166 https://github.com/MISP/MISP/commit/a73c1c461bc6f8a048eae92b5e99823afd892d1e https://github.com/MISP/MISP/commit/afbe08d256d609eee5195c5b0003cfb723ae7af1
Share on: