CVE-2022-2019
SourceCodester Prison Management System New User Creation improper authorization
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
A vulnerability classified as critical was found in SourceCodester Prison Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /classes/Users.php?f=save of the component New User Creation. The manipulation leads to improper authorization. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Se ha encontrado una vulnerabilidad clasificada como crítica en SourceCodester Prison Management System 1.0. Esta vulnerabilidad afecta a una funcionalidad desconocida del archivo /classes/Users.php?f=save del componente New User Creation. La manipulación conlleva a una autorización inapropiada. El ataque puede ser lanzado remotamente. La explotación ha sido revelada al público y puede ser usada
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-06-07 CVE Reserved
- 2022-06-07 CVE Published
- 2023-12-29 EPSS Updated
- 2024-08-03 CVE Updated
- 2024-08-03 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-285: Improper Authorization
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://vuldb.com/?id.201367 | Third Party Advisory |
URL | Date | SRC |
---|---|---|
https://github.com/ch0ing/vul/blob/main/WebRay.com.cn/Prison%20Management%20System--.md | 2024-08-03 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Prison Management System Project Search vendor "Prison Management System Project" | Prison Management System Search vendor "Prison Management System Project" for product "Prison Management System" | 1.0 Search vendor "Prison Management System Project" for product "Prison Management System" and version "1.0" | - |
Affected
|