Cosminexus Portal Framework is reported susceptible to an information disclosure vulnerability. In certain undisclosed circumstances, it may be possible for contents of cache objects to be replaced by the contents of other cache objects. This may allow for potentially sensitive information to be sent to a different user than intended. This may include potentially sensitive information, that may aid malicious users in attacks against the application. As this application framework is designed to handle business information, attackers may be able to gain access to potentially sensitive business data.
Cosminexus Portal Framework is reported susceptible to an information disclosure vulnerability. In certain undisclosed circumstances, it may be possible for contents of cache objects to be replaced by the contents of other cache objects. This may allow for potentially sensitive information to be sent to a different user than intended. This may include potentially sensitive information, that may aid malicious users in attacks against the application. As this application framework is designed to handle business information, attackers may be able to gain access to potentially sensitive business data.