Vulnerabilities > CVE-2023-3066 - Authorization Bypass Through User-Controlled Key vulnerability in Mobatime Amxgt 100 1.3.20

047910
CVSS 8.1 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
NONE
network
low complexity
mobatime
CWE-639

Summary

Incorrect Authorization vulnerability in Mobatime mobile application AMXGT100 allows a low-privileged user to impersonate anyone else, including administratorsThis issue affects Mobatime mobile application AMXGT100: through 1.3.20.

Vulnerable Configurations

Part Description Count
Application
Mobatime
2