First published: Wed Mar 06 2024(Updated: )
Incorrect access control in Customer Support System v1 allows non-administrator users to access administrative pages and execute actions reserved for administrators.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Customer Support System | ||
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-49978 is classified as a critical vulnerability due to its impact on administrative access control.
To fix CVE-2023-49978, update the Customer Support System to a patched version that secures access controls for administrative pages.
CVE-2023-49978 affects the Customer Support System version 1.0.
CVE-2023-49978 presents risks of unauthorized access, allowing non-administrators to execute actions reserved for administrators.
Yes, CVE-2023-49978 can lead to data breaches by exposing sensitive administrative functionalities to unauthorized users.