Vulnerability Details CVE-2023-49339
Ellucian Banner 9.17 allows Insecure Direct Object Reference (IDOR) via a modified bannerId to the /StudentSelfService/ssb/studentCard/retrieveData endpoint.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 39.8%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2023-49339
-
cpe:2.3:a:ellucian:banner:-
-
cpe:2.3:a:ellucian:banner:9.17