HIGH
An Insecure Direct Object Reference (IDOR) vulnerability in the Change Password feature of Subex ROC Partner Settlement 10.5 allows remote authenticated users to achieve account takeover via manipulation of POST parameters
Published Apr 14, 2020
8.8
HIGHCVSS 3.1
EPSS 1.90%
Description
Affected products
Remediation
References (3)
Change history (0)
No recorded changes yet.