Vulnerabilities > CVE-2023-43901 - Unspecified vulnerability in Emsigner 2.8.7
Attack vector
NETWORK Attack complexity
HIGH Privileges required
NONE Confidentiality impact
NONE Integrity impact
HIGH Availability impact
NONE Summary
Incorrect access control in the AdHoc User creation form of EMSigner v2.8.7 allows unauthenticated attackers to arbitrarily modify usernames and privileges by using the email address of a registered user.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |