Insecure Permissions in XXL Job Admin by xuxueli
CVE-2023-48087
5.4MEDIUM
What is CVE-2023-48087?
XXL Job Admin version 2.4.0 contains a vulnerability that allows attackers to exploit insecure permissions through specific endpoints, namely /xxl-job-admin/joblog/clearLog and /xxl-job-admin/joblog/logDetailCat. This flaw could lead to unauthorized access or manipulation of job logs, posing a risk to the integrity of the logging process and the sensitive information contained within.