Direct Request (Forced Browsing) vulnerability in Apache OFBiz.
This issue affects Apache OFBiz: before 18.12.16.
Users are recommended to upgrade to version 18.12.16, which fixes the issue.
The web application does not adequately enforce appropriate authorization on all restricted URLs, scripts, or files.
| Name | Vendor | Start Version | End Version | 
|---|---|---|---|
| Ofbiz | Apache | * | 18.12.16 (excluding) |