An information disclosure vulnerability in the /Letter/PrintQr/ endpoint of Solvait v24.4.2 allows attackers to access sensitive data via a crafted request.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
https://www.solvait.com/ | product |
https://gist.github.com/walhajri/e03974097d1fd4eb698a6a80931bdd45 | third party advisory exploit |