Vulnerabilities > Floorsightsoftware

DATE CVE VULNERABILITY TITLE RISK
2024-01-02 CVE-2023-45892 Authorization Bypass Through User-Controlled Key vulnerability in Floorsightsoftware Insight Q32023
An issue discovered in the Order and Invoice pages in Floorsight Insights Q3 2023 allows an unauthenticated remote attacker to view sensitive customer information.
network
low complexity
floorsightsoftware CWE-639
7.5
2024-01-02 CVE-2023-45893 Authorization Bypass Through User-Controlled Key vulnerability in Floorsightsoftware Customer Portal Q32023
An indirect Object Reference (IDOR) in the Order and Invoice pages in Floorsight Customer Portal Q3 2023 allows an unauthenticated remote attacker to view sensitive customer information.
network
low complexity
floorsightsoftware CWE-639
7.5