An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to access WIP details about jobs he should not have access to.
References
Link | Resource |
---|---|
https://www.starpracticemanagement.com/ | Product |
https://excellium-services.com/cert-xlm-advisory/CVE-2020-28401 | Third Party Advisory |
Configurations
Information
Published : 2021-01-28 23:15
Updated : 2021-07-21 04:39
NVD link : CVE-2020-28401
Mitre link : CVE-2020-28401
JSON object : View
CWE
Products Affected
iris
- star_practice_management