8.8
CVSSv3

CVE-2022-45287

Published: 21/06/2023 Updated: 28/06/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An access control issue in Registration.aspx of Temenos CWX 8.5.6 allows authenticated malicious users to escalate privileges and perform arbitrary Administrative commands.

Vulnerable Product Search on Vulmon Subscribe to Product

temenos cwx 8.5.6

Github Repositories

CWX Register Broken Access Control Report: November 2022 Affected: Tested on v856 Fix: No information Credit: WhiteBearVN_ ID: CVE-2022-45287, CVE-2023-34797 Description Temenos CWX has an Broken Access Control vulnerability in /Registrationaspx, leak serial number and can be updated information, welcome message at home page Steps to reproduce User login, we will not see