An Insecure Direct Object Reference (IDOR) vulnerability...
High severity
Unreviewed
Published
Nov 29, 2022
to the GitHub Advisory Database
•
Updated Jan 28, 2023
Description
Published by the National Vulnerability Database
Nov 29, 2022
Published to the GitHub Advisory Database
Nov 29, 2022
Last updated
Jan 28, 2023
An Insecure Direct Object Reference (IDOR) vulnerability in the password reset function of Telos Alliance Omnia MPX Node 1.0.0-1.4.[*] allows attackers to arbitrarily change user and Administrator account passwords.
References