← Back

CVE-2023-45893

nvd nist
Published: Jan 2, 2024Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

An indirect Object Reference (IDOR) in the Order and Invoice pages in Floorsight Customer Portal Q3 2023 allows an unauthenticated remote attacker to view sensitive customer information.

Affected (1)

Customer Portal
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to q3_2023

References (2)

Timeline

No history available yet.