Логотип exploitDog
bind:CVE-2023-32063
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-32063

Количество 2

Количество 2

nvd логотип

CVE-2023-32063

около 2 лет назад

OroCalendarBundle enables a Calendar feature and related functionality in Oro applications. Back-office users can access information from any call event, bypassing ACL security restrictions due to insufficient security checks. This issue has been patched in version 5.0.4 and 5.1.1.

CVSS3: 5
EPSS: Низкий
github логотип

GHSA-897w-jv7j-6r7g

около 2 лет назад

OroCRMCallBundle has incorrect call view page visibility

CVSS3: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-32063

OroCalendarBundle enables a Calendar feature and related functionality in Oro applications. Back-office users can access information from any call event, bypassing ACL security restrictions due to insufficient security checks. This issue has been patched in version 5.0.4 and 5.1.1.

CVSS3: 5
0%
Низкий
около 2 лет назад
github логотип
GHSA-897w-jv7j-6r7g

OroCRMCallBundle has incorrect call view page visibility

CVSS3: 5
0%
Низкий
около 2 лет назад

Уязвимостей на страницу