PT-2023-22123 · Unknown · Facschorus

Milind Sunilbhai Purswani

·

Published

2023-11-28

·

Updated

2023-12-05

·

CVE-2023-29066

CVSS v3.1

3.5

Low

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions FACSChorus (affected versions not specified)
Description The issue concerns improper assignment of data access privileges for operating system user accounts in the FACSChorus software. This allows a non-administrative OS account to modify information stored in the local application data folders.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Incorrect Privilege Assignment

Weakness Enumeration

Related Identifiers

CVE-2023-29066

Affected Products

Facschorus