A vulnerability was found in SourceCodester Best Fee Management System 1.0. It has been rated as critical. Affected by this issue is the function save_user of the file admin_class.php of the component Add User Handler. The manipulation leads to improper access controls. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-233450 is the identifier assigned to this vulnerability.
References
Link | Resource |
---|---|
https://github.com/movonow/demo/blob/main/click_fees.md | Not Applicable |
https://vuldb.com/?ctiid.233450 | Permissions Required Third Party Advisory |
https://vuldb.com/?id.233450 | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
17 Jul 2023, 18:51
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://vuldb.com/?id.233450 - Third Party Advisory | |
References | (MISC) https://vuldb.com/?ctiid.233450 - Permissions Required, Third Party Advisory | |
References | (MISC) https://github.com/movonow/demo/blob/main/click_fees.md - Not Applicable | |
First Time |
Best Fee Management System Project best Fee Management System
Best Fee Management System Project |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
CPE | cpe:2.3:a:best_fee_management_system_project:best_fee_management_system:1.0:*:*:*:*:*:*:* |
10 Jul 2023, 18:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-07-10 18:15
Updated : 2024-05-17 02:27
NVD link : CVE-2023-3599
Mitre link : CVE-2023-3599
CVE.ORG link : CVE-2023-3599
JSON object : View
Products Affected
best_fee_management_system_project
- best_fee_management_system
CWE
CWE-264
Permissions, Privileges, and Access Controls