CVE-2023-32669
CVSS V2 None
CVSS V3 None
Description
Authorization bypass vulnerability in BuddyBoss 2.2.9 version, the exploitation of which could allow an authenticated user to access and rename other users' albums. This vulnerability can be exploited by changing the album identification (id).
Overview
- CVE ID
- CVE-2023-32669
- Assigner
- INCIBE
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-10-03T12:23:24.533Z
- Last Modified Date
- 2023-10-03T12:23:24.533Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-budyboss |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-32669 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-32669 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-25 11:29:38 | Added to TrackCVE |