5.4
CVE-2024-55232
- EPSS 0.05%
- Veröffentlicht 18.12.2024 22:15:07
- Zuletzt bearbeitet 28.03.2025 16:21:59
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
An IDOR vulnerability in the manage-notes.php module in PHPGurukul Online Notes Sharing Management System v1.0 allows unauthorized users to delete notes belonging to other accounts due to missing authorization checks. This flaw enables attackers to delete another user's information.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Phpgurukul ≫ Online Notes Sharing Management System Version1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.05% | 0.169 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 5.4 | 2.8 | 2.5 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
|
CWE-290 Authentication Bypass by Spoofing
This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks.