feiqu-opensource Background Vertical authorization vulnerability exists in IndexController.java. demo users with low permission can perform operations within the permission of the admin super administrator and can use this vulnerability to change the blacklist IP address in the system at will.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/chen87548081/feiqu-opensource/issues/2 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-03-08T00:00:00
Updated: 2024-08-02T12:01:32.198Z
Reserved: 2023-02-27T00:00:00
Link: CVE-2023-27088
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-03-08T16:15:09.527
Modified: 2024-11-21T07:52:17.920
Link: CVE-2023-27088
Redhat
No data.