Vulnerabilities > CVE-2023-26957 - Missing Authorization vulnerability in Onekeyadmin 1.3.9
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
HIGH Availability impact
HIGH Summary
onekeyadmin v1.3.9 was discovered to contain an arbitrary file delete vulnerability via the component \admin\controller\plugins.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |