CVE-2023-45824

OroPlatform is a PHP Business Application Platform (BAP). A logged in user can access page state data of pinned pages of other users by pageId hash. This vulnerability is fixed in 5.1.4.
Configurations

No configuration.

History

No history.

Information

Published : 2024-03-25 19:15

Updated : 2024-03-26 12:55


NVD link : CVE-2023-45824

Mitre link : CVE-2023-45824

CVE.ORG link : CVE-2023-45824


JSON object : View

Products Affected

No product.

CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor