ZeroHour

CVE-2023-47316

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p36
Published
()
Modified
Description

Headwind MDM Web panel 5.22.1 is vulnerable to Incorrect Access Control. The Web panel allows users to gain access to potentially sensitive API calls such as listing users and their data, file management API calls and audit-related API calls.

Vendors
h-mdm
Products
headwind mdm
Weakness
CWE-639
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.