Home
MEDIUM: 5.3 CVSS:3.1/AC:L/AV:N/A:N/C:L/I:N/PR:N/S:U/UI:N
Description
An Insecure Direct Object Reference (IDOR) in Sage DPW v2024_12_004 and below allows unauthorized attackers to access internal forms via sending a crafted GET request.
References
www.sec4you-pentest.com/...en-zugriff-auf-interne-formulare/
www.sec4you-pentest.com/schwachstellen
www.sec4you-pentest.com/...en-zugriff-auf-interne-formulare/