Missing Authorization in GitHub repository fossbilling/fossbilling prior to 0.5.0.
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
Link | Tags |
---|---|
https://huntr.dev/bounties/390643f0-106b-4424-835d-52610aefa4c7 | patch third party advisory exploit |
https://github.com/fossbilling/fossbilling/commit/b95f92554e5cb38bd0710c0f4b413c5adda6f617 | patch |