Описание
RosarioSIS improper access control vulnerability
RosarioSIS prior to version 10.9.3 has a vulnerability that allows a user to return to a page containing personally identifiable information (PII) and sensitive information even after logging out of the application by using the browser's back button.
Пакеты
Наименование
francoisjacquet/rosariosis
composer
Затронутые версииВерсия исправления
< 10.9.3
10.9.3
Связанные уязвимости
CVSS3: 6.5
nvd
почти 3 года назад
Improper Access Control in GitHub repository francoisjacquet/rosariosis prior to 10.9.3.