PT-2024-12607 · Unknown · Saasproject Booking Package

Rafie Muhammad

·

Published

2024-05-17

·

Updated

2024-05-17

·

CVE-2023-37389

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SAASPROJECT Booking Package versions 1.5.98 and earlier
Description The issue is related to Improper Privilege Management, which allows Privilege Escalation in the SAASPROJECT Booking Package.
Recommendations For versions 1.5.98 and earlier, update to a version that includes a fix for the Improper Privilege Management issue to prevent Privilege Escalation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2023-37389

Affected Products

Saasproject Booking Package