Kodcloud KodExplorer Authorization Bypass Vulnerability in System Member Controller

Vulnerability

An authorization bypass vulnerability has been identified in kodcloud KodExplorer versions through 4.52. The issue resides in the 'initInstall' function of the 'systemMember.class.php' file. By manipulating the 'path' argument, a logged-in user with low privileges can access actions meant for higher privilege users, such as system reinitialization processes. This exploitation can lead to unintended consequences, like disrupting directory mappings for users, causing data visibility issues across the application.

Impact

Exploitation of this vulnerability allows for unauthorized access to administrative functions, potentially disrupting user data management and application integrity.

Reproduction

To reproduce this vulnerability, a logged-in user must manipulate the 'path' argument when invoking the 'initInstall' action in the 'systemMember.class.php' file. This can be done by sending a request that alters the 'path' value, bypassing the authorization checks and triggering a global reinitialization process.

Added: Apr 19, 2026, 12:18 PM
Updated: Apr 19, 2026, 12:18 PM

Vulnerability Rating

Custom Algorithm
spread
3.1
impact
1.3
exploitability
6.0
remediation
0.0
relevance
6.2
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.