Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-36912 | Authorization bypass vulnerability in BuddyBoss 2.2.9 version, the exploitation of which could allow an authenticated user to access and rename other users' albums. This vulnerability can be exploited by changing the album identification (id). |
No history.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-09-06T14:10:21.920Z
Reserved: 2023-05-11T08:48:57.515Z
Link: CVE-2023-32669
Updated: 2024-08-02T15:25:36.306Z
Status : Modified
Published: 2023-10-03T13:15:10.077
Modified: 2026-06-17T05:59:21.037
Link: CVE-2023-32669
No data.
OpenCVE Enrichment
No data.
-
CWE-639
Authorization Bypass Through User-Controlled Key
EUVD