First published: Thu Jun 16 2022(Updated: )
An issue in the save_users() function of Online Discussion Forum Site 1 allows unauthenticated attackers to arbitrarily create or update user accounts.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SourceCodester Online Discussion Forum Site | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-31294 is categorized as a high-severity vulnerability due to its ability to allow unauthenticated attackers to manipulate user accounts.
To fix CVE-2022-31294, update the Online Discussion Forum Site to the latest version that addresses this security issue.
CVE-2022-31294 can be exploited by unauthenticated attackers who can create or modify user accounts without authorization.
The impact of CVE-2022-31294 is that it allows attackers to arbitrarily create or update user accounts, potentially leading to account takeovers.
CVE-2022-31294 specifically affects version 1.0 of the Online Discussion Forum Site.