Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

E4

#44879of 53,622
5.7Total CVSS
Vulnerabilities · 1
PT-2023-20297
5.7
2023-06-02
Unknown · Status Powerbpm · CVE-2023-25780
**Name of the Vulnerable Software and Affected Versions** Status PowerBPM (affected versions not specified) **Description** The issue is related to insufficient authentication in a specific function of Status PowerBPM. A LAN attacker with normal user privileges can exploit this to modify the substitute agent for arbitrary users, resulting in serious consequences. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.