Sourcecodester Free and Open Source inventory management system v1.0 is vulnerable to Incorrect Access Control. An arbitrary user can change the password of another user and takeover the account via IDOR in the password change function.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-10-26T00:00:00
Updated: 2024-09-12T20:43:35.051Z
Reserved: 2023-10-23T00:00:00
Link: CVE-2023-46449
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-10-26T15:15:09.257
Modified: 2024-11-21T08:28:32.157
Link: CVE-2023-46449
Redhat
No data.