What the vulnerability does
01Description
Missing Authorization vulnerability in Avirtum iPages Flipbook.This issue affects iPages Flipbook: from n/a through 1.5.1.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
What the vulnerability does
Missing Authorization vulnerability in Avirtum iPages Flipbook.This issue affects iPages Flipbook: from n/a through 1.5.1.
Explanation of Vulnerability in Simple Terms
iPages Flipbook through version 1.5.1 fails to properly check user permissions before allowing access to sensitive data. An attacker with network access can read information they should not have access to without needing to authenticate or interact with a user. The vulnerability affects the confidentiality of data stored in the application.
What an attacker can do
Read sensitive data without authentication or user interaction.
Potential impact on your site
Unauthorized users can access confidential information stored in iPages Flipbook without logging in.
Conditions required to exploit
Network access to the affected iPages Flipbook installation; no authentication required.
Key dates
External resources
Related vulnerabilities