An issue in Anglaise Company Anglaise.Company v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://liff.line.me/1657030660-8nDEQNbe | product |
https://github.com/syz913/CVE-reports/blob/main/CVE-2023-38845.md | third party advisory exploit |