← Back to CVE List

CVE-2022-32244

Published: 2022-09-13T20:15Z
Last Modified: 2024-11-21T07:06Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Under certain conditions an attacker authenticated as a CMS administrator access the BOE Commentary database and retrieve (non-personal) system data, modify system data but can't make the system unavailable. This needs the attacker to have high privilege access to the same physical/logical network to access information which would otherwise be restricted, leading to low impact on confidentiality and high impact on integrity of the application. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt