Authorization bypass vulnerability in BuddyBoss 2.2.9 version, the exploitation of which could allow an authenticated user to access and rename other users' albums. This vulnerability can be exploited by changing the album identification (id).
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published: 2023-10-03T12:23:24.533Z

Updated: 2024-09-06T14:10:21.920Z

Reserved: 2023-05-11T08:48:57.515Z

Link: CVE-2023-32669

cve-icon Vulnrichment

Updated: 2024-08-02T15:25:36.306Z

cve-icon NVD

Status : Analyzed

Published: 2023-10-03T13:15:10.077

Modified: 2023-10-04T21:07:05.703

Link: CVE-2023-32669

cve-icon Redhat

No data.