Insecure Direct Object Reference Protection bypass by changing HTTP method in IBM Your Learning endpoint.
Critical
I
IBM
Submitted None
Team Summary
Official summary from IBM
Insecure Direct Object Reference vulnerability was reported to IBM, analyzed and has been remediated. Thank you to our external researcher.
Actions:
Reported by
suryahss
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Insecure Direct Object Reference (IDOR)