RackN Digital Rebar through 4.6.14, 4.7 through 4.7.22, 4.8 through 4.8.5, 4.9 through 4.9.12, and 4.10 through 4.10.8 has Insecure Permissions. After signing into Digital Rebar, users are issued authentication tokens tied to their account to perform actions within Digital Rebar. During the validation process of these tokens, Digital Rebar did not check if the user account still exists. Deleted Digital Rebar users could still use their tokens to perform actions within Digital Rebar.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://rackn.com/products/rebar/ |
|
History
Wed, 23 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published: 2022-12-06T00:00:00.000Z
Updated: 2025-04-23T16:14:39.074Z
Reserved: 2022-12-03T00:00:00.000Z
Link: CVE-2022-46382
Updated: 2024-08-03T14:31:46.321Z
Status : Modified
Published: 2022-12-06T16:15:11.407
Modified: 2025-04-23T17:16:23.263
Link: CVE-2022-46382
No data.