Required CVE Record Information
Description
Insecure Direct Object References (IDOR) in access control in Tracking 2.1.4 on NightWolf Penetration Testing allows an attacker to access via manipulating request parameters or object references.
CVSS 1 Total
Score | Severity | Version | Vector String |
---|---|---|---|
8.3 | HIGH | 4.0 | CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N |
Credits
- Hoang Anh Khoa (khoahoang329@gmail.com) reporter
- Quyen Hong Son (sonqh.kma@gmail.com) finder