CVE-2023-3287

Published
View on NVD ↗
CVSS v3
9.9
CRITICAL
CVSS v2
N/A
Affected
1
PROJECT

Description

A BOLA vulnerability in POST /admins allows a low privileged user to create a high privileged user (admin) in the system. This results in privilege escalation.

:date: Easy!Appointments - Self Hosted Appointment Scheduler
GitHubGitHub
4.2K