CVE

CVE-2021-35248

CVE-2021-35248

It has been reported that any Orion user, e.g. guest accounts can query the Orion.UserSettings entity and enumerate users and their basic settings.

Source: CVE-2021-35248

Exit mobile version