NA

CVE-2023-6342

Published: 30/11/2023 Updated: 06/12/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Tyler Technologies Court Case Management Plus allows a remote malicious user to authenticate as any user by manipulating at least the 'CmWebSearchPfp/Login.aspx?xyzldk=' and 'payforprint_CM/Redirector.ashx?userid=' parameters. The vulnerable "pay for print" feature was removed on or around 2023-11-01.

Vulnerable Product Search on Vulmon Subscribe to Product

tylertech court case management plus -