pretix
Moderate fix1 remedy
cpe:2.3:a:pretix:pretix:*:*:*:*:*:*:*
Moderate fix1 remedy
A vulnerability exists in a Pretix API endpoint that allows users to access sensitive files belonging to other users, simply by knowing the UUID of the file. This access is granted without proper authorization, as the files were not meant to be accessible based on UUID alone.
Exploitation of this vulnerability could lead to unauthorized access to sensitive user files.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.