IDOR Vulnerability in CodeAstro's Complaint Management System
CVE-2024-55506
8.8HIGH
What is CVE-2024-55506?
CVE-2024-55506 is a critical security vulnerability identified as an Insecure Direct Object Reference (IDOR) in CodeAstro's Complaint Management System version 1.0. This flaw allows attackers to manipulate the 'id' parameter in DELETE requests sent to delete.php, enabling them to execute arbitrary code. As a result, unauthorized access to sensitive information may occur, posing a significant risk to users and organizations utilizing the software. Immediate mitigation steps and updates are crucial to safeguard against potential exploitation.