CVE-2021-31780
misp
In app/Model/MispObject.php in MISP 2.4.141, an incorrect sharing group association could lead to information disclosure on an event edit. When an object has a sharing group associated with an event edit, the sharing group object is ignored and instead the passed local ID is reused.
- CVSS
- 7.5
- EPSS
- 1.04% 60.6% percentile
- CISA KEV
- Not listed
- Published
- 2021.04.24