An issue in MaysWind ezBookkeeping 0.7.0 allows a remote attacker to escalate privileges via the token component.
References
| Link | Resource |
|---|---|
| https://github.com/mayswind/ezbookkeeping/issues/33 | Exploit Issue Tracking Third Party Advisory |
| https://hkohi.ca/vulnerability/2 | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2025-02-12 22:15
Updated : 2025-06-06 17:57
NVD link : CVE-2024-57604
Mitre link : CVE-2024-57604
CVE.ORG link : CVE-2024-57604
JSON object : View
Products Affected
mayswind
- ezbookkeeping
CWE
CWE-276
Incorrect Default Permissions
