• caglararli@hotmail.com
  • 05386281520

CVE-2023-6773 | CodeAstro POS and Inventory Management System 1.0 User Creation register_account account_type access control

Çağlar Arlı      -    88 Views

CVE-2023-6773 | CodeAstro POS and Inventory Management System 1.0 User Creation register_account account_type access control

A vulnerability has been found in CodeAstro POS and Inventory Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /accounts_con/register_account of the component User Creation Handler. The manipulation of the argument account_type with the input Admin leads to improper access controls. This vulnerability is known as CVE-2023-6773. The attack can be launched remotely. Furthermore, there is an exploit available.