An IDOR vulnerability in the manage-notes.php module in PHPGurukul Online Notes Sharing Management System v1.0 allows unauthorized users to delete notes belonging to other accounts due to missing authorization checks. This flaw enables attackers to delete another user's information.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/CV1523/CVEs/blob/main/CVE-2024-55232.md |
![]() ![]() |
History
Fri, 28 Mar 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Phpgurukul
Phpgurukul online Notes Sharing Management System |
|
CPEs | cpe:2.3:a:phpgurukul:online_notes_sharing_management_system:1.0:*:*:*:*:*:*:* | |
Vendors & Products |
Phpgurukul
Phpgurukul online Notes Sharing Management System |
Thu, 26 Dec 2024 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-290 | |
Metrics |
cvssV3_1
|
Wed, 18 Dec 2024 22:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An IDOR vulnerability in the manage-notes.php module in PHPGurukul Online Notes Sharing Management System v1.0 allows unauthorized users to delete notes belonging to other accounts due to missing authorization checks. This flaw enables attackers to delete another user's information. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-12-26T19:29:48.210Z
Reserved: 2024-12-06T00:00:00
Link: CVE-2024-55232

Updated: 2024-12-26T19:29:39.191Z

Status : Analyzed
Published: 2024-12-18T22:15:07.297
Modified: 2025-03-28T16:21:59.560
Link: CVE-2024-55232

No data.