Access Control Vulnerability in Newbee Mall by Newbee Ltd
CVE-2020-23448
9.8CRITICAL
What is CVE-2020-23448?
Newbee Mall is susceptible to an access control vulnerability that enables unauthorized users to escalate privileges. This issue arises from a flaw in the authentication mechanism located in the AdminLoginInterceptor.java, where the security checks can be evaded, granting potential attackers the ability to access sensitive administrative features without proper authorization.
