Forged Alliance Forever Vote improper authorization
Published Jan 6, 2023
7.5
HIGHCVSS 3.1
EPSS 0.53%
Description
A vulnerability was found in Forged Alliance Forever up to 3746. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Vote Handler. The manipulation leads to improper authorization. Upgrading to version 3747 is able to address this issue. The patch is named 6880971bd3d73d942384aff62d53058c206ce644. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-217555.
Affected products
- Vendor n/a Product Forged Alliance Forever Defaultunknown
Affected
- 3746
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| n/a | Forged Alliance Forever | unknown | Affected
|
- < 3747
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (6)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-52139 Advisory
- https://github.com/FAForever/fa/commit/6880971bd3d73d942384aff62d53058c206ce644 patch
- https://github.com/FAForever/fa/pull/4398 issue-trackingPatch
- https://github.com/FAForever/fa/releases/tag/3747 patchRelease Notes
- https://vuldb.com/?ctiid.217555 signaturepermissions-requiredPermissions Required
- https://vuldb.com/?id.217555 vdb-entrytechnical-descriptionThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-52139 | Advisory | |
| https://github.com/FAForever/fa/commit/6880971bd3d73d942384aff62d53058c206ce644 | patch | |
| https://github.com/FAForever/fa/pull/4398 | issue-trackingPatch | |
| https://github.com/FAForever/fa/releases/tag/3747 | patchRelease Notes | |
| https://vuldb.com/?ctiid.217555 | signaturepermissions-requiredPermissions Required | |
| https://vuldb.com/?id.217555 | vdb-entrytechnical-descriptionThird Party Advisory |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
Red Hat
No data
GitHub
No data