PoC Index

CVE-2024-55231

MEDIUM 4.3EPSS 0.3%

An IDOR vulnerability in the edit-notes.php module of PHPGurukul Online Notes Sharing Management System v1.0 allows unauthorized users to modify notes belonging to other accounts due to missing authorization checks. This flaw exposes sensitive data and enables attackers to alter another user's information.

CVSS v3.1
4.3 MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
EPSS
0.33% chance of exploitation in the next 30 days, 26th percentile
Published
2024-12-18
Updated
2024-12-26

Proof-of-concept exploits (1)

References

Related