First published: Thu Oct 31 2024(Updated: )
An Insecure Direct Object Reference (IDOR) vulnerability in appointment-detail.php in Phpgurukul's Beauty Parlour Management System v1.1 allows unauthorized access to the Personally Identifiable Information (PII) of other customers.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Project Beauty Beauty Parlour Management System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-51066 is classified as a high severity vulnerability due to the risk of unauthorized access to Personally Identifiable Information.
To fix CVE-2024-51066, implement proper access controls to ensure that users can only access their own PII.
CVE-2024-51066 is classified as an Insecure Direct Object Reference (IDOR) vulnerability.
CVE-2024-51066 affects Phpgurukul's Beauty Parlour Management System version 1.1.
CVE-2024-51066 allows unauthorized access to the Personally Identifiable Information (PII) of other customers.