A vulnerability classified as critical has been found in Lissy93 Dashy 2.1.1. This affects an unknown part of the file /config-manager/save of the component Configuration Handler. The manipulation of the argument config leads to improper access controls. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-244305 was assigned to this vulnerability.
References
Link | Resource |
---|---|
https://github.com/Lissy93/dashy/issues/1336 | Exploit Issue Tracking |
https://treasure-blarney-085.notion.site/Dashy-0dca8a0ebbd84f78ae6d03528ff1538c?pvs=4 | Exploit |
https://vuldb.com/?ctiid.244305 | Permissions Required VDB Entry |
https://vuldb.com/?id.244305 | Third Party Advisory VDB Entry |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: VulDB
Published: 2023-11-02T10:31:06.228Z
Updated: 2023-11-02T10:31:06.228Z
Reserved: 2023-11-02T05:39:07.124Z
Link: CVE-2023-5916
JSON object: View
NVD Information
Status : Modified
Published: 2023-11-02T11:15:14.540
Modified: 2024-05-17T02:33:23.723
Link: CVE-2023-5916
JSON object: View
Redhat Information
No data.
CWE