NA

CVE-2023-38965

Published: 03/11/2023 Updated: 13/11/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Lost and Found Information System 1.0 allows account takeover via username and password to a /classes/Users.php?f=save URI.

Vulnerable Product Search on Vulmon Subscribe to Product

oretnom23 lost and found information system 1.0

Exploits

Lost and Found Information System version 10 suffers from an insecure direct object reference vulnerability that allows for account takeover ...