CVE-2023-3304: Improper Access Control in admidio/admidio
Admidio prior to 4.2.9 is vulnerable to Improper Access Control.
Other sources
Improper Access Control in GitHub repository admidio/admidio prior to 4.2.9.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
composer/admidio/admidioto a version that resolves this vulnerability.Fixed in 4.2.9
Event History
Frequently Asked Questions
What is CVE-2023-3304?
CVE-2023-3304 is a vulnerability related to Improper Access Control in the Admidio software prior to version 4.2.9.
How severe is CVE-2023-3304?
CVE-2023-3304 has a severity rating of 5.4 (medium).
How can I fix CVE-2023-3304?
To fix CVE-2023-3304, update your Admidio software to version 4.2.9 or later.
Where can I find more information about CVE-2023-3304?
You can find more information about CVE-2023-3304 at the following references: [GitHub commit](https://github.com/admidio/admidio/commit/3b248b7d5e0e60a00ee2f9a6908d538d62a5837f), [Huntr bounty](https://huntr.dev/bounties/721fae61-3c8c-4e4b-8407-64321bc0ed17), [NVD entry](https://nvd.nist.gov/vuln/detail/CVE-2023-3304).
What is CWE-284?
CWE-284 is a vulnerability type known as Improper Access Control, which is related to CVE-2023-3304.