In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Improper Authorization vulnerabilities in an interactive lesson.
Start learningUpgrade froxlor/froxlor to version 2.3.7 or higher.
froxlor/froxlor is a server administration software.
Affected versions of this package are vulnerable to Improper Authorization through the Mysqls.add process. An attacker can create databases and users on unauthorized MySQL servers by supplying a disallowed server index in the API request, bypassing intended access controls. This allows the attacker to obtain credentials and manage resources on servers that should be inaccessible to them, potentially consuming resources and persisting unauthorized data.