juzaweb <= 3.4 is vulnerable to Incorrect Access Control, resulting in an application outage after a 500 HTTP status code. The payload in the timezone field was not correctly validated.
References
Link Resource
https://github.com/juzaweb/cms Product
https://www.sumor.top/index.php/archives/880/ Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2024-01-09T00:00:00

Updated: 2024-01-09T00:50:36.921336

Reserved: 2023-10-30T00:00:00


Link: CVE-2023-46906

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2024-01-09T01:15:38.830

Modified: 2024-01-12T15:18:52.410


Link: CVE-2023-46906

JSON object: View

cve-icon Redhat Information

No data.