What the vulnerability does
01Description
Missing Authorization vulnerability in raratheme Ridhi ridhi allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Ridhi: from n/a through <= 1.1.2.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
What the vulnerability does
Missing Authorization vulnerability in raratheme Ridhi ridhi allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Ridhi: from n/a through <= 1.1.2.
Explanation of Vulnerability in Simple Terms
Ridhi versions 1.1.2 and earlier lack proper authorization checks, allowing unauthenticated attackers to trigger a denial-of-service condition over the network. The vulnerability requires no user interaction and can be exploited remotely. Site availability may be impacted if the component is actively used.
What an attacker can do
Trigger a denial-of-service condition without authentication.
Potential impact on your site
Site availability may be degraded if the vulnerable component is actively used.
Conditions required to exploit
Network access only; no authentication or user interaction required.
Key dates
External resources
Related vulnerabilities