CVE-2023-29066: Incorrect User Management
The FACSChorus software does not properly assign data access privileges for operating system user accounts. A non-administrative OS account can modify information stored in the local application data folders.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-29066?
CVE-2023-29066 is a vulnerability in the FACSChorus software that allows non-administrative OS accounts to modify information stored in the local application data folders.
How does CVE-2023-29066 affect the FACSChorus software?
CVE-2023-29066 affects the FACSChorus software by not properly assigning data access privileges for operating system user accounts.
What is the severity of CVE-2023-29066?
The severity of CVE-2023-29066 is low with a CVSS score of 3.2.
Which versions of the FACSChorus software are affected by CVE-2023-29066?
CVE-2023-29066 affects versions 5.0 and 5.1 of the FACSChorus software.
How can I fix CVE-2023-29066 in the FACSChorus software?
To fix CVE-2023-29066, it is recommended to update to a patched version of the FACSChorus software provided by the vendor.