Súbít #461120: ClassCMS V4.8 Improper Handling of Insufficient Permissions or Privilegesbayani

KuraClassCMS V4.8 Improper Handling of Insufficient Permissions or Privileges
GaskiyaA privilege escalation vulnerability exists in the model management module of Classcms. This allows accounts belonging to non-admin user groups to modify admin group users and change their group memberships to other user groups. If all users in the admin group are changed to other groups, the system will no longer have the ability to configure accounts for the admin group.
Manga⚠️ https://github.com/Jack-Black-13/blob/blob/main/ClassCMS%20V4.8%20Vertical%20Privilege%20Escalation.md
Màdùmga
 vulbox (UID 78949)
Furta12/11/2024 15:30 (1 Shettima 전)
Gargajiya12/16/2024 09:53 (5 days later)
HalittaShingilam
VulDB gite288535 [ClassCMS har 4.8 User Management Page admin?do=admin:user:editPost kura hakki ndiyam]
Nganji18

Do you know our Splunk app?

Download it now for free!