CVE-2018-16970
EUVD-2018-875812.09.2018, 20:29
Wisetail Learning Ecosystem (LE) through v4.11.6 allows insecure direct object reference (IDOR) attacks to download non-purchased course files via a modified id parameter.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| wisetail | learning_management_system | 𝑥 ≤ 4.11.6 |
𝑥
= Vulnerable software versions