Improper authorization vulnerability exists in the User Management (/admin/users) page of GROWI versions prior to v6.0.6. If this vulnerability is exploited, a user may delete or suspend its own account without the user's intention.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2023-12-26T07:21:24.393Z

Updated: 2024-08-02T22:16:46.265Z

Reserved: 2023-12-07T02:39:51.268Z

Link: CVE-2023-50332

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-12-26T08:15:11.570

Modified: 2024-01-05T17:28:31.000

Link: CVE-2023-50332

cve-icon Redhat

No data.