Lucene search

K
cvelistMitreCVELIST:CVE-2023-29868
HistoryMay 02, 2023 - 12:00 a.m.

CVE-2023-29868

2023-05-0200:00:00
mitre
www.cve.org
zammad vulnerability access control unauthorized changes customer permissions

0.0005 Low

EPSS

Percentile

17.5%

Zammad 5.3.x (Fixed in 5.4.0) is vulnerable to Incorrect Access Control. An authenticated attacker with agent and customer roles could perform unauthorized changes on articles where they only have customer permissions.

0.0005 Low

EPSS

Percentile

17.5%

Related for CVELIST:CVE-2023-29868