Access Control Flaw in Customer Support System by SourceCodester
CVE-2023-49978
8.8HIGH
What is CVE-2023-49978?
A security gap in the Customer Support System version 1 allows users without administrative privileges to gain unauthorized access to admin-level pages. This flaw can enable these non-admin users to execute actions that should be reserved for administrators, posing significant risks to the integrity and confidentiality of sensitive data and functionalities within the system.