5.9
CVSSv3

CVE-2023-43901

Published: 14/11/2023 Updated: 17/11/2023
CVSS v3 Base Score: 5.9 | Impact Score: 3.6 | Exploitability Score: 2.2
VMScore: 0

Vulnerability Summary

Incorrect access control in the AdHoc User creation form of EMSigner v2.8.7 allows unauthenticated malicious users to arbitrarily modify usernames and privileges by using the email address of a registered user.

Vulnerable Product Search on Vulmon Subscribe to Product

emsigner emsigner 2.8.7