ZeroHour

CVE-2023-32669

CVSS 3.1
5.4 medium
EPSS
<1%p22
Published
()
Modified
Description

Authorization bypass vulnerability in BuddyBoss 2.2.9 version, the exploitation of which could allow an authenticated user to access and rename other users' albums. This vulnerability can be exploited by changing the album identification (id).

Vendors
buddyboss
Products
buddyboss
Weakness
CWE-639
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.