Vulnerabilities (CVE)

Filtered by vendor Stratodesk Subscribe
Filtered by product Notouch Center
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-25917 1 Stratodesk 1 Notouch Center 2024-11-21 6.5 MEDIUM 8.8 HIGH
Stratodesk NoTouch Center before 4.4.68 is affected by: Incorrect Access Control. A low privileged user on the platform, for example a user with "helpdesk" privileges, can perform privileged operations including adding a new administrator to the platform via the easyadmin/user/submitCreateTCUser.do page.