An IDOR vulnerability in the edit-notes.php module of PHPGurukul Online Notes Sharing Management System v1.0 allows unauthorized users to modify notes belonging to other accounts due to missing authorization checks. This flaw exposes sensitive data and enables attackers to alter another user's information.
References
Link | Resource |
---|---|
https://github.com/CV1523/CVEs/blob/main/CVE-2024-55231.md | Exploit Third Party Advisory |
https://github.com/CV1523/CVEs/blob/main/CVE-2024-55231.md | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
27 Mar 2025, 16:30
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/CV1523/CVEs/blob/main/CVE-2024-55231.md - Exploit, Third Party Advisory | |
First Time |
Phpgurukul
Phpgurukul online Notes Sharing Management System |
|
CPE | cpe:2.3:a:phpgurukul:online_notes_sharing_management_system:1.0:*:*:*:*:*:*:* |
26 Dec 2024, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-12-18 22:15
Updated : 2025-03-27 16:30
NVD link : CVE-2024-55231
Mitre link : CVE-2024-55231
CVE.ORG link : CVE-2024-55231
JSON object : View
Products Affected
phpgurukul
- online_notes_sharing_management_system
CWE
CWE-639
Authorization Bypass Through User-Controlled Key