Security Advisory
CVE-2023-6342
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Tyler Technologies Court Case Management Plus allows a remote attacker to authenticate as any user by manipulating at least the CmWebSearchPfp/Login.aspx?xyzldk= and payforprint_CM/Redirector.ashx?userid= parameters. The vulnerable "pay for print" feature was removed on or around 2023-11-01.