An indirect Object Reference (IDOR) in the Order and Invoice pages in Floorsight Customer Portal Q3 2023 allows an unauthenticated remote malicious user to view sensitive customer information.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
floorsightsoftware customer portal |