CVE-2019-9482

Source
https://cve.org/CVERecord?id=CVE-2019-9482
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-9482.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2019-9482
Published
2019-03-01T05:29:00.790Z
Modified
2026-08-07T16:35:37.870783Z
Severity
  • 5.3 (Medium) CVSS_V3 - CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
Summary
[none]
Details

In MISP 2.4.102, an authenticated user can view sightings that they should not be eligible for. Exploiting this requires access to the event that has received the sighting. The issue affects instances with restrictive sighting settings (event only / sighting reported only).

References

Affected packages

Git / github.com/misp/misp

Affected ranges

Type
GIT
Repo
https://github.com/misp/misp
Events
Database specific
Show details
{
    "cpe": "cpe:2.3:a:misp-project:misp:2.4.102:*:*:*:*:*:*:*",
    "extracted_events": [
        {
            "introduced": "2.4.102"
        },
        {
            "last_affected": "2.4.102"
        }
    ],
    "source": [
        "CPE_STRING",
        "REFERENCES"
    ]
}

Affected versions

2.*
2.4.102
v2.*
v2.4.102

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-9482.json"