Execution with Unnecessary Privileges in GitHub repository polonel/trudesk prior to 1.2.3.
The product performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.
Link | Tags |
---|---|
https://huntr.dev/bounties/9-polonel/trudesk | exploit third party advisory patch |
https://github.com/polonel/trudesk/commit/f739eac6fc52adc0cba83a49034100e5b99ac7c8 | third party advisory patch |