Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Pega Platform versions 8.7.5 to Infinity 24.2.2 are affected by a Insecure Direct Object Reference issue in a user interface component that can only be used to read data
Vulnerability Description
Pega Platform versions 8.7.5 to Infinity 24.2.2 are affected by a Insecure Direct Object Reference issue in a user interface component that can only be used to read data.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Vulnerability Type
通过用户控制密钥绕过授权机制
Vulnerability Title
Pega Platform 安全漏洞
Vulnerability Description
Pega Platform是美国Pega公司的一个企业管理平台。 Pega Platform 8.7.5版本至24.2.2版本存在安全漏洞,该漏洞源于用户界面组件中存在不安全的直接对象引用,可能导致数据读取。
CVSS Information
N/A
Vulnerability Type
N/A