Vulnerabilities > CVE-2023-37498 - Unspecified vulnerability in Hcltech Unica
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
A user is capable of assigning him/herself to arbitrary groups by reusing a POST request issued by an administrator. It is possible that an attacker could potentially escalate their privileges.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |