Описание
An Insecure Direct Object Reference issue exists in the Tyler Odyssey Portal platform before 17.1.20. This may allow an external party to access sensitive case records.
Ссылки
- Third Party Advisory
- Issue TrackingThird Party AdvisoryUS Government Resource
- Third Party Advisory
- ExploitTechnical DescriptionThird Party Advisory
- Issue TrackingVendor Advisory
- Third Party Advisory
- Issue TrackingThird Party AdvisoryUS Government Resource
- Third Party Advisory
- ExploitTechnical DescriptionThird Party Advisory
- Issue TrackingVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 17.1.20 (исключая)
cpe:2.3:a:tylertech:odyssey_portal:*:*:*:*:*:*:*:*
EPSS
Процентиль: 65%
0.00487
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-639
Связанные уязвимости
CVSS3: 7.5
github
почти 4 года назад
An Insecure Direct Object Reference issue exists in the Tyler Odyssey platform before 17.1.20. This may allow an external party to access sensitive case records.
EPSS
Процентиль: 65%
0.00487
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-639