CVE-2023-39691 Information

Description

An issue discovered in kodbox through 1.43 allows attackers to arbitrarily add Administrator accounts via crafted GET request.

Reference

https://blog.mo60.cn/index.php/archives/kodbox_Logical.html

Share on: