IDOR vulnerability in Janto Ticketing Software affecting version 4.3r10. This vulnerability could allow a remote user to obtain a user's event ticket by creating a specific request with the ticket reference ID, leading to the exposure of sensitive user data.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: INCIBE
Published: 2024-05-07T11:35:47.621Z
Updated: 2024-06-04T17:56:30.333Z
Reserved: 2024-05-06T09:57:42.029Z
Link: CVE-2024-4538
JSON object: View
NVD Information
Status : Awaiting Analysis
Published: 2024-05-07T12:15:10.030
Modified: 2024-05-07T13:39:32.710
Link: CVE-2024-4538
JSON object: View
Redhat Information
No data.
CWE