cve/2023/CVE-2023-39421.md
2024-05-25 21:48:12 +02:00

837 B

CVE-2023-39421

Description

The RDPWin.dll component as used in the IRM Next Generation booking engine includes a set of hardcoded API keys for third-party services such as Twilio and Vonage. These keys allow unrestricted interaction with these services.

POC

Reference

Github

No PoCs found on GitHub currently.