Jason Parker

2 exploits Active since Nov 2023
CVE-2023-6341 WRITEUP MEDIUM WRITEUP
CMS360 - Info Disclosure
Catalis (previously Icon Software) CMS360 allows a remote, unauthenticated attacker to view sensitive court documents by modifying document and other identifiers in URLs. The impact varies based on the intention and configuration of a specific CMS360 installation.
CVSS 5.3
CVE-2023-6376 WRITEUP MEDIUM WRITEUP
Henschen & Associates - Info Disclosure
Henschen & Associates court document management software does not sufficiently randomize file names of cached documents, allowing a remote, unauthenticated attacker to access restricted documents.
CVSS 5.3