frame.html in Aida-Web (Aida Web) allows remote attackers to bypass a protection mechanism and obtain comment and task details via modified values to the (1) Mehr and (2) SUPER parameters.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Aida-web |
Aida-orga |
* |
* |
References