Sonatype Nexus Repository Manager 3 Pro up to and including 3.30.0 has Incorrect Access Control.
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.
Link | Tags |
---|---|
https://support.sonatype.com/hc/en-us/categories/201980768-Welcome-to-the-Sonatype-Support-Knowledge-Base | vendor advisory |
https://support.sonatype.com/hc/en-us/articles/1500006126462 | patch vendor advisory |