Improper authorisation of regular users in ProIntegra Uptime DC software (versions below 2.0.0.33940) allows them to change passwords of all other users including administrators leading to a privilege escalation.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: CERT-PL

Published: 2023-10-04T10:54:27.047Z

Updated: 2023-10-04T10:55:56.217Z

Reserved: 2023-09-15T12:45:58.751Z


Link: CVE-2023-4997

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-10-04T11:15:10.563

Modified: 2023-10-05T17:04:09.880


Link: CVE-2023-4997

JSON object: View

cve-icon Redhat Information

No data.