Privilege Escalation via Email ID Modification in CodeIgniter Framework
CVE-2020-10793
8.8HIGH
What is CVE-2020-10793?
CodeIgniter versions up to 4.0.0 are susceptible to a privilege escalation vulnerability that permits remote attackers to manipulate the Email ID on the 'Select Role of the User' page, potentially granting them unauthorized privileges. However, it is crucial to note that this issue is primarily associated with a custom module or plugin rather than the CodeIgniter framework itself, as CodeIgniter does not natively include user management functionalities or a login interface. This distinction highlights the importance of securing custom implementations built upon the framework.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
