Orca HCM Vulnerability Allows Arbitrary System File Download
CVE-2024-8585
6.5MEDIUM
What is CVE-2024-8585?
Orca HCM from LEARNING DIGITA does not properly restrict a specific parameter of the file download functionality, allowing a remote attacker with regular privileges to download arbitrary system files.
Affected Version(s)
Orca HCM 0 < 11.0