vendor:
ezCourses
by:
Unknown
5.5
CVSS
MEDIUM
Security Bypass
287
CWE
Product Name: ezCourses
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Unknown
ezCourses Security Bypass Vulnerability
ezCourses is prone to a security-bypass vulnerability because it fails to properly validate user-supplied input. Attackers could exploit the issue to bypass certain security restrictions and add or change the 'admin' account password.
Mitigation:
Apply patches or updates from the vendor to ensure proper input validation and security restrictions.