ZeroHour

CVE-2024-55232

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p30
Published
()
Modified
Description

An IDOR vulnerability in the manage-notes.php module in PHPGurukul Online Notes Sharing Management System v1.0 allows unauthorized users to delete notes belonging to other accounts due to missing authorization checks. This flaw enables attackers to delete another user's information.

Vendors
phpgurukul
Products
online notes sharing management system
Weakness
CWE-290
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L

In the news

No ingested article mentions this CVE yet.