Incorrect Access Control in Froxlor by SoftCreatR
CVE-2018-12642
7.5HIGH
What is CVE-2018-12642?
Froxlor versions up to 0.9.39.5 are susceptible to an access control issue that allows a user to access tickets not owned by them. This vulnerability can potentially expose sensitive information, as unauthorized users may manipulate or view these tickets. Proper access controls should be implemented to ensure that users can only interact with their own tickets, reinforcing the importance of secure application design.
