What the vulnerability does
01Description
Missing Authorization vulnerability in uxper Togo togo.This issue affects Togo: from n/a through < 1.0.4.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
What the vulnerability does
Missing Authorization vulnerability in uxper Togo togo.This issue affects Togo: from n/a through < 1.0.4.
Explanation of Vulnerability in Simple Terms
Togo versions 1.0.4 and earlier lack proper authorization checks, allowing authenticated users to disrupt service availability. An attacker with low-level account access can trigger a denial-of-service condition without user interaction. The vulnerability affects the availability of the application but does not expose or modify data.
What an attacker can do
Disrupt service availability by making the application unresponsive or unavailable.
Potential impact on your site
Legitimate users may experience service outages or degraded performance if an authenticated attacker exploits this flaw.
Conditions required to exploit
Attacker must have a valid low-privilege user account on the system.
Key dates
External resources
Related vulnerabilities