A vulnerability in Suprema BioStar (aka Bio Star) 2 v2.8.16 allows attackers to escalate privileges to System Administrator via a crafted PUT request to the update profile page.
References
Link | Resource |
---|---|
https://nobugescapes.com/wp-content/uploads/2022/08/Part1.docx | Exploit Third Party Advisory |
https://nobugescapes.com/blog/privilege-escalation-from-user-operator-to-system-administrator/ | Exploit Third Party Advisory |
Configurations
Information
Published : 2022-09-19 14:15
Updated : 2022-09-21 11:13
NVD link : CVE-2022-38351
Mitre link : CVE-2022-38351
JSON object : View
CWE
CWE-269
Improper Privilege Management
Products Affected
supremainc
- biostar_2