A vulnerability classified as critical has been found in code-projects Laundry System 1.0. This affects an unknown part of the file /data/. The manipulation leads to missing authentication. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.
Link | Tags |
---|---|
https://vuldb.com/?id.311679 | vdb entry third party advisory |
https://vuldb.com/?ctiid.311679 | signature permissions required vdb entry |
https://vuldb.com/?submit.592266 | vdb entry third party advisory |
https://github.com/tuooo/CVE/issues/11 | issue tracking third party advisory exploit |
https://code-projects.org/ | product |