Security Advisory

CVE-2023-43457

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-09-25 00:00:00
Last updated 2024-09-24 15:28:17
Assigner mitre
State PUBLISHED

Description

An issue in Service Provider Management System v.1.0 allows a remote attacker to gain privileges via the ID parameter in the /php-spms/admin/?page=user/ endpoint.