An IDOR vulnerability in CodeAstro's Complaint Management System v1.0 (version with 0 updates) enables an attacker to execute arbitrary code and obtain sensitive information via the delete.php file and modifying the id parameter.
References
| Link | Resource |
|---|---|
| https://github.com/CV1523/CVEs/blob/main/CVE-2024-55506.md | Exploit Third Party Advisory |
| https://github.com/CV1523/CVEs/blob/main/CVE-2024-55506.md | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2024-12-18 23:15
Updated : 2025-04-03 16:36
NVD link : CVE-2024-55506
Mitre link : CVE-2024-55506
CVE.ORG link : CVE-2024-55506
JSON object : View
Products Affected
codeastro
- complaint_management_system
CWE
CWE-639
Authorization Bypass Through User-Controlled Key
