Security Advisory

CVE-2023-27377

7.5
HIGH

Vulnerability Description

Missing authentication in the StudentPopupDetails_EmergencyContactDetails method in IDAttend’s IDWeb application 3.1.052 and earlier allows extraction of sensitive student data by unauthenticated attackers.
Published Date October 25, 2023
Official Source NIST NVD Advisory