Description
Authorization bypass vulnerability in BuddyBoss 2.2.9 version, the exploitation of which could allow an authenticated user to access and rename other users' albums. This vulnerability can be exploited by changing the album identification (id).
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-36912 | Authorization bypass vulnerability in BuddyBoss 2.2.9 version, the exploitation of which could allow an authenticated user to access and rename other users' albums. This vulnerability can be exploited by changing the album identification (id). |
References
History
No history.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-09-06T14:10:21.920Z
Reserved: 2023-05-11T08:48:57.515Z
Link: CVE-2023-32669
Updated: 2024-08-02T15:25:36.306Z
Status : Modified
Published: 2023-10-03T13:15:10.077
Modified: 2024-11-21T08:03:48.870
Link: CVE-2023-32669
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD