Insecure Direct Object Reference (IDOR) exists in Tufin SecureChange, affecting all versions prior to R20-2 GA. Fixed in version R20-2 GA.
References
Link | Resource |
---|---|
https://github.com/Accenture/AARO-Bugs/blob/master/AARO-CVE-List.md | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2021-02-09 06:15
Updated : 2021-07-21 11:39
NVD link : CVE-2020-13462
Mitre link : CVE-2020-13462
CVE.ORG link : CVE-2020-13462
JSON object : View
Products Affected
tufin
- securetrack
CWE
CWE-639
Authorization Bypass Through User-Controlled Key