Security Advisory

CVE-2023-38872

3.7
LOW

Vulnerability Description

An Insecure Direct Object Reference (IDOR) vulnerability in gugoan Economizzer commit 3730880 (April 2023) and v.0.9-beta1 allows any unauthenticated attacker to access cash book entry attachments of any other user, if they know the Id of the attachment.
Published Date September 28, 2023
Official Source NIST NVD Advisory