Access Control Vulnerability in TeamPass by TeamPass
CVE-2017-15053
4.9MEDIUM
What is CVE-2017-15053?
An access control vulnerability exists in TeamPass prior to version 2.1.27.9, allowing users with manager rights to improperly manipulate user roles. This flaw can be exploited by an authenticated attacker who tampers with the application's requests, enabling them to delete or modify arbitrary roles without proper authorization. It's crucial for organizations utilizing TeamPass to update their installations to mitigate this risk.
