Improper Authorization in GitHub repository orchardcms/orchardcore prior to 1.3.0.
The product does not perform or incorrectly performs an authorization check when an actor attempts to access a resource or perform an action.
Link | Tags |
---|---|
https://github.com/orchardcms/orchardcore/commit/b7096af1028d8f909f63dd076d1bbd573913a92d | third party advisory patch |
https://huntr.dev/bounties/0019eb1c-8bf9-4bd0-a27f-aadc173515cb | exploit third party advisory patch |