Critical severity9.8NVD Advisory· Published Nov 3, 2023· Updated Jun 17, 2026
CVE-2023-38965
CVE-2023-38965
Description
Lost and Found Information System 1.0 allows account takeover via username and password to a /classes/Users.php?f=save URI.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:oretnom23:lost_and_found_information_system:1.0:*:*:*:*:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: 1.0
Patches
Vulnerability mechanics
References
3- packetstormsecurity.com/files/175077/Lost-And-Found-Information-System-1.0-Insecure-Direct-Object-Reference.htmlnvdExploitThird Party AdvisoryVDB Entry
- github.com/Or4ngm4n/vulnreability-code-review-php/blob/main/Lost%20and%20Found%20Information%20System%20v1.0.txtnvdExploitThird Party Advisory
- www.exploit-db.com/exploits/51795nvd
News mentions
0No linked articles in our index yet.