First published: Wed Mar 06 2024(Updated: )
Broken access control in the component /admin/management/users of School Fees Management System v1.0 allows attackers to escalate privileges and perform Administrative actions, including adding and deleting user accounts.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
School Fees Management System | ||
School Fees Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-49982 has a high severity rating due to its potential for privilege escalation and unauthorized administrative actions.
To fix CVE-2023-49982, implement proper access controls and validate user permissions before allowing administrative actions.
CVE-2023-49982 specifically affects the /admin/management/users component of School Fees Management System v1.0.
Attackers can escalate privileges, add, and delete user accounts due to the broken access control in CVE-2023-49982.
Currently, there is no official patch released for CVE-2023-49982, and users should apply manual mitigations as a precaution.