Skip to main content

CVE detail

CVE-2023-36238

Insecure Direct Object Reference (IDOR) in Bagisto v.1.5.1 allows an attacker to obtain sensitive information via the invoice ID parameter.

CVSS 6.5 · Medium