Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown
CVE-2023-26579
Disclosure Date: October 25, 2023 (last updated February 25, 2025)
Missing authentication in the DeleteStaff method in IDAttend’s IDWeb application 3.1.013 allows deletion of staff information by unauthenticated attackers.
0
Attacker Value
Unknown
CVE-2023-26578
Disclosure Date: October 25, 2023 (last updated February 25, 2025)
Arbitrary file upload to web root in the IDAttend’s IDWeb application 3.1.013 allows authenticated attackers to upload dangerous files to web root such as ASP or ASPX, gaining command execution on the affected server.
0