A vulnerability was found in Benner ModernaNet up to 1.1.0. It has been declared as critical. This vulnerability affects unknown code of the file /AGE0000700/GetImageMedico?fooId=1. The manipulation of the argument fooId leads to improper control of resource identifiers. The attack can be initiated remotely. Upgrading to version 1.1.1 is able to address this issue. It is recommended to upgrade the affected component.
The product receives input from an upstream component, but it does not restrict or incorrectly restricts the input before it is used as an identifier for a resource that may be outside the intended sphere of control.
Link | Tags |
---|---|
https://vuldb.com/?id.296692 | vdb entry technical description |
https://vuldb.com/?ctiid.296692 | vdb entry permissions required signature |
https://vuldb.com/?submit.499877 | vdb entry third party advisory exploit |
https://github.com/yago3008/cves | related third party advisory exploit |