Vulnerabilities > CVE-2022-31295 - Authorization Bypass Through User-Controlled Key vulnerability in Razormist Online Discussion Forum Site 1.0

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
HIGH
Availability impact
NONE
network
low complexity
razormist
CWE-639

Summary

An issue in the delete_post() function of Online Discussion Forum Site 1 allows unauthenticated attackers to arbitrarily delete posts.

Vulnerable Configurations

Part Description Count
Application
Razormist
1