Pat Infinite Solutions HelpdeskAdvanced <= 11.0.33 is vulnerable to Incorrect Access Control. Low privileged users can edit their own ACL rules by sending a request to the "AclList/SaveAclRules" administrative function.
History

Mon, 13 Jan 2025 22:15:00 +0000

Type Values Removed Values Added
Description Pat Infinite Solutions HelpdeskAdvanced <= 11.0.33 is vulnerable to Incorrect Access Control. Low privileged users can edit their own ACL rules by sending a request to the "AclList/SaveAclRules" administrative function.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2025-01-13T00:00:00

Updated: 2025-01-13T22:03:48.750098

Reserved: 2023-09-08T00:00:00

Link: CVE-2023-42228

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-01-13T22:15:10.887

Modified: 2025-01-13T22:15:10.887

Link: CVE-2023-42228

cve-icon Redhat

No data.