What the vulnerability does
01Description
Incorrect Privilege Assignment vulnerability in uxper Golo golo allows Privilege Escalation.This issue affects Golo: from n/a through <= 1.7.0.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
What the vulnerability does
Incorrect Privilege Assignment vulnerability in uxper Golo golo allows Privilege Escalation.This issue affects Golo: from n/a through <= 1.7.0.
Explanation of Vulnerability in Simple Terms
Golo versions 1.7.0 and earlier contain a critical vulnerability that allows unauthenticated attackers to gain complete control over the application. No special conditions or user interaction are required—an attacker on the network can exploit this remotely. The vulnerability affects confidentiality, integrity, and availability of the system.
What an attacker can do
Run arbitrary code, read all data, modify or delete content, and disrupt service without authentication.
Potential impact on your site
Complete compromise of the Golo application and any data it stores; immediate patching required.
Conditions required to exploit
Network access only; no authentication, special configuration, or user interaction required.
Key dates
External resources
Related vulnerabilities