RULE(RULE ID:337828)

Rule General Information
Release Date: 2024-02-27
Rule Name: Lost and Found Information System v1.0 Account Take Over Vulnerability (CVE-2023-38965)
Severity:
CVE ID:
Rule Protection Details
Description: Lost and Found Information System 1.0 allows account takeover via username and password to a /classes/Users.php?f=save URI.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference: https://cxsecurity.com/issue/WLB-2023100041
Solutions
Please contact the software vendor to update the software patch.