Vulnerabilities > CVE-2023-45899 - Incorrect Authorization vulnerability in Idnovate Superuser 2.3.5

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
HIGH
Availability impact
NONE
network
low complexity
idnovate
CWE-863

Summary

An issue in the component SuperUserSetuserModuleFrontController:init() of idnovate superuser before v2.4.2 allows attackers to bypass authentication via a crafted HTTP call.

Vulnerable Configurations

Part Description Count
Application
Idnovate
1

Common Weakness Enumeration (CWE)