CVE-2024-13067: CodeAstro Online Food Ordering System All Users Page all_users.php access control
A vulnerability was found in CodeAstro Online Food Ordering System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/allusers.php of the component All Users Page. The manipulation leads to improper access controls. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-13067?
CVE-2024-13067 is classified as a critical vulnerability.
How do I fix CVE-2024-13067?
To fix CVE-2024-13067, you need to implement proper access controls for the /admin/all_users.php file.
What type of vulnerability is described in CVE-2024-13067?
CVE-2024-13067 is an improper access control vulnerability.
Which component is affected by CVE-2024-13067?
CVE-2024-13067 affects the All Users Page component of CodeAstro Online Food Ordering System.
What may result from the exploitation of CVE-2024-13067?
Exploitation of CVE-2024-13067 may lead to unauthorized access to user information.