CVE-2023-24599

Publication date

2023-05-29 00:00:00

Family

mitre

State

PUBLISHED

Description

OX App Suite before backend 7.10.6-rev37 allows authenticated users to change the appointments of arbitrary users via conflicting ID numbers, aka "ID confusion."