An issue in MaysWind ezBookkeeping 0.7.0 allows a remote attacker to escalate privileges via the lack of rate limiting.
The product does not properly limit the number or frequency of interactions that it has with an actor, such as the number of incoming requests.
Link | Tags |
---|---|
https://github.com/mayswind/ezbookkeeping/issues/33 | exploit issue tracking third party advisory |
https://hkohi.ca/vulnerability/1 | exploit third party advisory |