CVE-2023-45824
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Mar 25, 2024
Updated: Mar 26, 2024
CWE ID 200
Summary
CVE-2023-45824 is a vulnerability affecting OroPlatform, a PHP Business Application Platform. This issue allows a logged-in user to access page state data of other users' pinned pages, using the pageId hash. This breach of confidentiality can lead to unauthorized access and potential data theft. The vulnerability has been rectified in the 5.1.4 release.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share