ShowDoc 2.4.1 allows remote attackers to edit other users notes by navigating with a modified page_id.
The web application does not adequately enforce appropriate authorization on all restricted URLs, scripts, or files.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Showdoc | Showdoc | 2.4.1 (including) | 2.4.1 (including) |