CVE-2013-3596

AdvancePro Advanceware allows remote authenticated users to obtain sensitive information about arbitrary customers' orders via a modified id parameter.
References
Link Resource
http://www.kb.cert.org/vuls/id/704526 US Government Resource
http://osvdb.org/96801
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:advanceprotech:advanceware:-:*:*:*:*:*:*:*

Information

Published : 2013-09-08 09:55

Updated : 2013-09-11 20:36


NVD link : CVE-2013-3596

Mitre link : CVE-2013-3596


JSON object : View

CWE
CWE-264

Permissions, Privileges, and Access Controls

Advertisement

dedicated server usa

Products Affected

advanceprotech

  • advanceware