CVE-2022-4879

A vulnerability was found in Forged Alliance Forever up to 3746. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Vote Handler. The manipulation leads to improper authorization. Upgrading to version 3747 is able to address this issue. The patch is named 6880971bd3d73d942384aff62d53058c206ce644. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-217555.
Configurations

Configuration 1 (hide)

cpe:2.3:a:forged_alliance_forever_project:forged_alliance_forever:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:36

Type Values Removed Values Added
CVSS v2 : 4.1
v3 : 7.5
v2 : 4.1
v3 : 4.6
References () https://github.com/FAForever/fa/commit/6880971bd3d73d942384aff62d53058c206ce644 - Patch () https://github.com/FAForever/fa/commit/6880971bd3d73d942384aff62d53058c206ce644 - Patch
References () https://github.com/FAForever/fa/pull/4398 - Patch () https://github.com/FAForever/fa/pull/4398 - Patch
References () https://github.com/FAForever/fa/releases/tag/3747 - Release Notes () https://github.com/FAForever/fa/releases/tag/3747 - Release Notes
References () https://vuldb.com/?ctiid.217555 - Permissions Required () https://vuldb.com/?ctiid.217555 - Permissions Required
References () https://vuldb.com/?id.217555 - Third Party Advisory () https://vuldb.com/?id.217555 - Third Party Advisory

29 Feb 2024, 01:36

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad fue encontrada en Forged Alliance Forever hasta 3746. Ha sido declarada crítica. Una función desconocida del componente Vote Handler es afectada por esta vulnerabilidad. La manipulación conduce a una autorización inadecuada. La actualización a la versión 3747 puede solucionar este problema. El parche se llama 6880971bd3d73d942384aff62d53058c206ce644. Se recomienda actualizar el componente afectado. El identificador asociado de esta vulnerabilidad es VDB-217555.

Information

Published : 2023-01-06 11:15

Updated : 2024-11-21 07:36


NVD link : CVE-2022-4879

Mitre link : CVE-2022-4879

CVE.ORG link : CVE-2022-4879


JSON object : View

Products Affected

forged_alliance_forever_project

  • forged_alliance_forever
CWE
CWE-285

Improper Authorization

NVD-CWE-Other