PT-2024-15003 · Tecnick.Com+3 · Tcexam

Krzysztof Zając

·

Published

2024-01-11

·

Updated

2025-06-20

·

CVE-2023-6554

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Software (affected versions not specified)
Description The issue arises when access to the "admin" folder is not protected by external authorization mechanisms, such as Apache Basic Auth. This allows any user to download protected information, including exam answers.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2023-6554

Affected Products

Tcexam