Missing Authentication In IDAttend’s IDWeb Application
Vulnerability Details
Missing authentication in the SearchStudentsStaff method in IDAttend’s IDWeb application 3.1.013 allows extraction sensitive student and teacher data by unauthenticated attackers.
Affected Versions
Discovered in: 3.1.013
Fixed Versions
Fixed in: 3.1.053