ZeroHour

CVE-2023-43194

PoC
CVSS 3.1
5.3 medium
EPSS
<1%p42
Published
()
Modified
Description

Submitty before v22.06.00 is vulnerable to Incorrect Access Control. An attacker can delete any post in the forum by modifying request parameter.

Vendors
rcos
Products
submitty
Weakness
CWE-862
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.