Skip to content

Instantly share code, notes, and snippets.

View aashiqahamedn's full-sized avatar

Aashiq Ahamed N aashiqahamedn

View GitHub Profile
@aashiqahamedn
aashiqahamedn / Incorrect Access Control.txt
Last active March 27, 2024 04:29
Incorrect Access Control
Name of the Affected Product:
Reportico
Affected Version:
Till 8.1.0
Description:
This vulnerability occurs when a low privilege user is able to access and view configuration details that are intended to be restricted to admin users. These configuration details may include sensitive information related to SQL queries and other critical system settings. This unauthorized access allows the low privilege user to gain insights into the inner workings of the application or system, potentially leading to unintended exposure of sensitive data or exploitation of system weaknesses.
Impact: