MISP
cpe:2.3:a:misp:misp:*:*:*:*:*:*:*
- < 2.4.198
A vulnerability in MISP (Malware Information Sharing Platform) prior to version 2.4.198 allows for an Access Control List (ACL) to be ignored during graphical user interface (GUI) attribute searches. This oversight could potentially lead to unauthorized access or visibility of certain attributes, depending on the user's permissions.
Exploitation of this vulnerability could result in unauthorized access to attributes during GUI searches, bypassing established ACLs.
Users can upgrade to MISP version 2.4.198 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.