CVE-2022-30355 | OvalEdge up to 5.2.8.0 /profile/updateProfile userId/email default permission
A vulnerability was found in OvalEdge up to 5.2.8.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /profile/updateProfile. The manipulation of the argument userId/email leads to incorrect default permissions.
This vulnerability is handled as CVE-2022-30355. The attack may be launched remotely. There is no exploit available.