Authorization bypass vulnerability in BuddyBoss 2.2.9 version, the exploitation of which could allow an authenticated user to access and rename other users' albums. This vulnerability can be exploited by changing the album identification (id).
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: INCIBE
Published: 2023-10-03T12:23:24.533Z
Updated: 2024-09-06T14:10:21.920Z
Reserved: 2023-05-11T08:48:57.515Z
Link: CVE-2023-32669
Vulnrichment
Updated: 2024-08-02T15:25:36.306Z
NVD
Status : Modified
Published: 2023-10-03T13:15:10.077
Modified: 2024-11-21T08:03:48.870
Link: CVE-2023-32669
Redhat
No data.