CVE-2018-16970

4.3MEDIUM

Wisetail Learning Ecosystem (LE) through v4.11.6 allows insecure direct object reference (IDOR) attacks to download non-purchased course files via a modified id parameter.

发布于: 9/12/2018更新于: 11/21/2024

描述

Wisetail Learning Ecosystem (LE) through v4.11.6 allows insecure direct object reference (IDOR) attacks to download non-purchased course files via a modified id parameter.

AI分析AI驱动

受影响产品

wisetaillearning_management_system

参考资料