CVE-2022-38351

Severity CVSS v4.0:
Pending analysis
Type:
CWE-269 Improper Privilege Management
Publication date:
19/09/2022
Last modified:
29/05/2025

Description

A vulnerability in Suprema BioStar (aka Bio Star) 2 v2.8.16 allows attackers to escalate privileges to System Administrator via a crafted PUT request to the update profile page.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:supremainc:biostar_2:2.8.16:*:*:*:*:*:*:*