First published: Tue Jan 16 2024(Updated: )
An issue discovered in kodbox through 1.43 allows attackers to arbitrarily add Administrator accounts via crafted GET request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Kodcloud | <=1.43 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-39691 is considered a high severity vulnerability due to its potential for unauthorized administrative access.
To fix CVE-2023-39691, update Kodbox to version 1.44 or later, which addresses this vulnerability.
CVE-2023-39691 affects all versions of Kodbox up to and including 1.43.
Yes, CVE-2023-39691 can allow remote attackers to gain administrative control through crafted GET requests.
The implications of CVE-2023-39691 include the potential for attackers to manage and manipulate sensitive data on affected systems.