Apache OFBiz
cpe:2.3:a:apache:ofbiz:*:*:*:*:*:*:*, +1 more
- < 24.09.06
A vulnerability allowing improper access control has been identified in Apache OFBiz in multi-tenant deployments, affecting versions prior to 24.09.06. This vulnerability could lead to cross-tenant data exposure via the program export feature.
Exploitation of this vulnerability could result in unauthorized access to data across different tenants in a multi-tenant deployment.
Users are advised to upgrade to Apache OFBiz version 24.09.06 or later, which addresses this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.