CVE-2023-38965

Published
View on NVD ↗
CVSS v3
9.8
CRITICAL
CVSS v2
N/A
Affected
1
PROJECT

Description

Lost and Found Information System 1.0 allows account takeover via username and password to a /classes/Users.php?f=save URI.

Some Easy Code Review .
GitHubGitHub