Access Control Vulnerability in NewBee Mall Product
CVE-2020-23449
7.5HIGH
What is CVE-2020-23449?
The NewBee Mall application has a vulnerability related to improper access control in the NewBeeMallIndexConfigServiceImpl.java file. This flaw allows remote attackers to manipulate and gain inappropriate privileges over user information by exploiting userID parameters, enabling unauthorized modifications to user data without proper authentication.
