An access control issue in the component /ip/admin/ of Edoc-doctor-appointment-system v1.0.1 allows attackers to arbitrarily edit, read, and delete Administrator data.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Edoc-doctor-appointment-system | Edoc-doctor-appointment-system_project | 1.0.1 (including) | 1.0.1 (including) |