CVE-2022-29950
Dashboard / Vulnerabilities / CVE-2022-29950
CVE-2022-29950
Published: 4 May 2022Last Modified: 11 Mar 2026
Summary:
Details: Experian Hunter 1.16 allows remote authenticated users to modify assumed-immutable elements via the (1) rule name parameter to the Rules page or the (2) subrule name or (3) categories name parameter to the Subrules page. NOTE: the vendor disputes this because version 1.16 has never existed
References: , https://www.experian.in/hunter, https://gist.github.com/Voidager88/73c2d512a72cceb0ef84dbf87a497d10
Affected packages
Package
Name:
Purl:
Affected ranges
Type: N/A
Events:
Introduced- None
Fixed -None
Affected versions
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
