CVE-2019-13403# CVE-2019-13403
- Report: May 2019
- Fix: May 2019
- Credit: B3Bo1d
## Description
Temenos CWX version 8.9 has an Broken Access Control vulnerability in the module /CWX/Employee/EmployeeEdit2.aspx, leading to the viewing of user information.
## PoC
Before

After

## Reference
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-13403
[4.0K] /data/pocs/5d134b02f2c2674b530f4641950b11f299264788
├── [338K] 1.png
├── [338K] 2.png
└── [ 397] README.md
0 directories, 3 files