An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to access WIP details about jobs he should not have access to.
Link | Tags |
---|---|
https://www.starpracticemanagement.com/ | product |
https://excellium-services.com/cert-xlm-advisory/CVE-2020-28401 | third party advisory |