Description
Insecure permissions in cskefu v7.0.1 allows unauthenticated attackers to arbitrarily add administrator accounts.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No solution or workaround provided in the CVE record.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-39230 | Insecure permissions in cskefu v7.0.1 allows unauthenticated attackers to arbitrarily add administrator accounts. |
References
| Link | Providers |
|---|---|
| https://github.com/chatopera/cskefu/issues/724 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T10:07:34.462Z
Reserved: 2022-07-25T00:00:00.000Z
Link: CVE-2022-36521
No data.
Status : Modified
Published: 2022-08-26T14:15:08.353
Modified: 2026-06-17T04:53:36.697
Link: CVE-2022-36521
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-306
Missing Authentication for Critical Function
EUVD