An insecure direct object reference (IDOR) vulnerability was discovered in PHPGurukul Online Birth Certificate System v1.0. This vulnerability resides in the viewid parameter of /user/view-application-detail.php. Authenticated users can exploit this flaw by manipulating the viewid parameter in the URL to access sensitive birth certificate details of other users without proper authorization checks.
CVSS
No CVSS.
References
Link | Resource |
---|---|
https://github.com/SCR-athif/CVE/tree/main/CVE-2024-55058 | Exploit Third Party Advisory |
Configurations
History
27 Mar 2025, 16:23
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/SCR-athif/CVE/tree/main/CVE-2024-55058 - Exploit, Third Party Advisory | |
CPE | cpe:2.3:a:phpgurukul:online_birth_certificate_system:1.0:*:*:*:*:*:*:* | |
First Time |
Phpgurukul online Birth Certificate System
Phpgurukul |
17 Dec 2024, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-12-17 21:15
Updated : 2025-03-27 16:23
NVD link : CVE-2024-55058
Mitre link : CVE-2024-55058
JSON object : View
Products Affected
phpgurukul
- online_birth_certificate_system
CWE
No CWE.