Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Geraldoalcantara

#15711de 53,779
17.3CVSS total
Vulnerabilidades · 2
Alta
1
Crítica
1
PT-2023-31252
9.8
2023-12-20
Unknown · Book Store Management System · CVE-2023-49543
**Name of the Vulnerable Software and Affected Versions** Book Store Management System version v1 **Description** The issue allows attackers to access unauthorized pages and execute administrative functions without authenticating, due to incorrect access control. **Recommendations** For Book Store Management System version v1, update the access control mechanism to properly authenticate and authorize users before allowing access to administrative functions and pages.
PT-2023-31437
7.5
2023-12-20
Unknown · Customer Support System · CVE-2023-49979
**Name of the Vulnerable Software and Affected Versions** Customer Support System version v1 **Description** A directory listing issue allows attackers to list directories and sensitive files within the application without requiring authorization. **Recommendations** For Customer Support System version v1, consider restricting access to sensitive directories and files to minimize the risk of exploitation. As a temporary workaround, review and adjust the application's authorization settings to ensure proper access controls are in place.