Miniorange · Miniorange Yourmembership Single Sign On · CVE-2023-37987
**Name of the Vulnerable Software and Affected Versions**
miniOrange YourMembership Single Sign On versions 1.1.3 and earlier
**Description**
The issue is related to a Missing Authorization vulnerability, which allows the exploitation of incorrectly configured access control security levels.
**Recommendations**
For versions 1.1.3 and earlier, update to a version that contains a fix for this issue, as no specific workaround is provided for these versions.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.