CVE-2023-27107 Information

Description

Incorrect access control in the runReport function of MyQ Solution Print Server before 8.2 Patch 32 and Central Server before 8.2 Patch 22 allows users who do not have appropriate access rights to generate internal reports using a direct URL.

Reference

https://gist.github.com/smidtbx10/f8ff1c4977b7f54886c6a52e9ef4e816

Share on: