CVE-2023-31704

CRITICAL

Oretnom23 Online Computer And Laptop Store - Incorrect Authorization

Title source: rule

Description

Sourcecodester Online Computer and Laptop Store 1.0 is vulnerable to Incorrect Access Control, which allows remote attackers to elevate privileges to the administrator's role.

Exploits (1)

nomisec WRITEUP
by d34dun1c02n · poc
https://github.com/d34dun1c02n/CVE-2023-31704

Scores

CVSS v3 9.8
EPSS 0.0150
EPSS Percentile 81.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-863
Status published
Products (1)
oretnom23/online_computer_and_laptop_store 1.0
Published Jul 13, 2023
Tracked Since Feb 18, 2026