PT-2024-13656 · Reportico · Reportico

Aashiqahamedno

·

Published

2024-04-11

·

Updated

2024-07-03

·

CVE-2023-48865

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Reportico versions prior to 8.1.0
Description An issue in Reportico allows attackers to obtain sensitive information via the execute mode parameter of the URL.
Recommendations For versions prior to 8.1.0, update to version 8.1.0 or later to resolve the issue.

Exploit

Fix

Improper Authentication

IDOR

Weakness Enumeration

Related Identifiers

CVE-2023-48865
GHSA-PWW3-X2G7-X8Q2

Affected Products

Reportico