Описание
HCL Unica Centralized Offer Management is vulnerable to Insecure Direct Object References (IDOR). An attacker can bypass authorization and access resources in the system directly, for example database records or files.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 25.1.0.1 (исключая)
cpe:2.3:a:hcltech:unica_centralized_offer_management:*:*:*:*:*:*:*:*
EPSS
Процентиль: 12%
0.00042
Низкий
4.2 Medium
CVSS3
7.5 High
CVSS3
Дефекты
CWE-639
Связанные уязвимости
CVSS3: 4.2
github
4 месяца назад
HCL Unica Centralized Offer Management is vulnerable to Insecure Direct Object References (IDOR). An attacker can bypass authorization and access resources in the system directly, for example database records or files.
EPSS
Процентиль: 12%
0.00042
Низкий
4.2 Medium
CVSS3
7.5 High
CVSS3
Дефекты
CWE-639