Insecure Direct Object Reference (IDOR) exists in Tufin SecureChange, affecting all versions prior to R20-2 GA. Fixed in version R20-2 GA.
References
Link | Resource |
---|---|
https://github.com/Accenture/AARO-Bugs/blob/master/AARO-CVE-List.md | Third Party Advisory |
Configurations
Information
Published : 2021-02-08 22:15
Updated : 2021-07-21 04:39
NVD link : CVE-2020-13462
Mitre link : CVE-2020-13462
JSON object : View
CWE
CWE-639
Authorization Bypass Through User-Controlled Key
Products Affected
tufin
- securetrack