Incorrect access control in Book Store Management System v1 allows attackers to access unauthorized pages and execute administrative functions without authenticating.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
https://www.sourcecodester.com/php/15748/book-store-management-system-project-using-php-codeigniter-3-free-source-code.html | product |
https://owasp.org/Top10/A01_2021-Broken_Access_Control/ | product |
https://github.com/geraldoalcantara/CVE-2023-49543 | third party advisory exploit |