A vulnerability was found in SourceCodester Best Fee Management System 1.0. It has been rated as critical. Affected by this issue is the function save_user of the file admin_class.php of the component Add User Handler. The manipulation leads to improper access controls. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-233450 is the identifier assigned to this vulnerability.
References
Link | Resource |
---|---|
https://github.com/movonow/demo/blob/main/click_fees.md | Not Applicable |
https://vuldb.com/?ctiid.233450 | Permissions Required Third Party Advisory |
https://vuldb.com/?id.233450 | Third Party Advisory |
https://github.com/movonow/demo/blob/main/click_fees.md | Not Applicable |
https://vuldb.com/?ctiid.233450 | Permissions Required Third Party Advisory |
https://vuldb.com/?id.233450 | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 08:17
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 6.5
v3 : 6.3 |
References | () https://github.com/movonow/demo/blob/main/click_fees.md - Not Applicable | |
References | () https://vuldb.com/?ctiid.233450 - Permissions Required, Third Party Advisory | |
References | () https://vuldb.com/?id.233450 - Third Party Advisory |
17 Jul 2023, 18:51
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
CPE | cpe:2.3:a:best_fee_management_system_project:best_fee_management_system:1.0:*:*:*:*:*:*:* | |
References | (MISC) https://github.com/movonow/demo/blob/main/click_fees.md - Not Applicable | |
References | (MISC) https://vuldb.com/?ctiid.233450 - Permissions Required, Third Party Advisory | |
References | (MISC) https://vuldb.com/?id.233450 - Third Party Advisory |
10 Jul 2023, 18:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-07-10 18:15
Updated : 2024-11-21 08:17
NVD link : CVE-2023-3599
Mitre link : CVE-2023-3599
CVE.ORG link : CVE-2023-3599
JSON object : View
Products Affected
best_fee_management_system_project
- best_fee_management_system
CWE
CWE-264
Permissions, Privileges, and Access Controls