NA

CVE-2023-43317

Published: 24/01/2024 Updated: 30/01/2024
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An issue in Coign CRM Portal v.06.06 allows a remote malicious user to escalate privileges via the userPermissionsList parameter in Session Storage component.

Vulnerable Product Search on Vulmon Subscribe to Product

coign coign 06.06

Github Repositories

Vertical Privilege Escalation via Session Storage by Amjad Ali (CVE-2023-43317)

CVE-2023-43317 A normal user can elevate their privileges via the userPermissionsLIst parameter in Session Storage component to gain unauthorized access to administrative-level resources and features This could lead to unauthorized data access, data modification, and other actions that are typically restricted to administrators Vulnerable Product:- Coign 0606 Steps To Rep