An indirect Object Reference (IDOR) in the Order and...
High severity
Unreviewed
Published
Jan 2, 2024
to the GitHub Advisory Database
•
Updated Jan 17, 2024
Description
Published by the National Vulnerability Database
Jan 2, 2024
Published to the GitHub Advisory Database
Jan 2, 2024
Last updated
Jan 17, 2024
An indirect Object Reference (IDOR) in the Order and Invoice pages in Floorsight Customer Portal Q3 2023 allows an unauthenticated remote attacker to view sensitive customer information.
References