CleverStupidDog yf-exam v 1.8.0 is vulnerable to Authentication Bypass. The program uses a fixed JWT key, and the stored key uses username format characters. Any user who logged in within 24 hours. A token can be forged with his username to bypass authentication.
The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data.
Link | Tags |
---|---|
https://github.com/CleverStupidDog/yf-exam/issues/2 | issue tracking exploit third party advisory |
https://github.com/Fw-fW-fw/UPDATE-CVE/blob/main/CVE-2023-25403 | third party advisory |