Vulnerabilities > CVE-2023-45824 - Unspecified vulnerability in Oroinc Oroplatform

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
LOW
Integrity impact
NONE
Availability impact
NONE
network
low complexity
oroinc

Summary

OroPlatform is a PHP Business Application Platform (BAP). A logged in user can access page state data of pinned pages of other users by pageId hash. This vulnerability is fixed in 5.1.4.

Vulnerable Configurations

Part Description Count
Application
Oroinc
1