WoWonder The Ultimate PHP Social Network Platform v4.0.0 was discovered to contain an access control issue which allows unauthenticated attackers to arbitrarily change group ID names.
                
            References
                    | Link | Resource | 
|---|---|
| https://youtu.be/b665r1ZfCg4 | Exploit Third Party Advisory | 
| https://youtu.be/b665r1ZfCg4 | Exploit Third Party Advisory | 
Configurations
                    History
                    No history.
Information
                Published : 2022-03-27 17:15
Updated : 2024-11-21 06:53
NVD link : CVE-2022-26254
Mitre link : CVE-2022-26254
CVE.ORG link : CVE-2022-26254
JSON object : View
Products Affected
                wowonder
- wowonder
CWE
                
                    
                        
                        CWE-639
                        
            Authorization Bypass Through User-Controlled Key
