cve/2023/CVE-2023-39421.md
2024-06-18 02:51:15 +02:00

837 B

CVE-2023-39421

Description

The RDPWin.dll component as used in the IRM Next Generation booking engine includes a set of hardcoded API keys for third-party services such as Twilio and Vonage. These keys allow unrestricted interaction with these services.

POC

Reference

Github

No PoCs found on GitHub currently.