Security Advisory
CVE-2023-49339
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Ellucian Banner 9.17 allows Insecure Direct Object Reference (IDOR) via a modified bannerId to the /StudentSelfService/ssb/studentCard/retrieveData endpoint.