Unknown · System Pdv Version 1.0 · CVE-2025-45968
Name of the Vulnerable Software and Affected Versions:
System PDV version 1.0
Description:
The application contains an Insecure Direct Object Reference (IDOR) vulnerability due to a lack of proper authorization checks when accessing objects referenced by the `hash` parameter in a URL. This allows direct access to other users' data or internal resources without proper permission. Successful exploitation of this flaw may result in the exposure of sensitive information.
Recommendations:
Ensure proper authorization checks are implemented when accessing objects referenced by the `hash` parameter.