VYPR

LabCup

by LabCup

CVEs (1)

  • CVE-2021-33031LowJun 10, 2021
    risk 0.20cvss 3.1epss 0.01

    In LabCup before <v2_next_18022, it is possible to use the save API to perform unauthorized actions for users without access to user management in order to, after successful exploitation, gain access to a victim's account. A user without the user-management privilege can change…