Security Advisory

CVE-2023-50332

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-12-26 07:21:24
Last updated 2024-08-02 22:16:46
Assigner jpcert
State PUBLISHED

Description

Improper authorization vulnerability exists in the User Management (/admin/users) page of GROWI versions prior to v6.0.6. If this vulnerability is exploited, a user may delete or suspend its own account without the users intention.