Looking for the vulnerability index of Invicti's legacy products?
Pega Infinity Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-11356) - Vulnerability Database

Pega Infinity Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-11356)

Description

The application distribution export functionality in PEGA Platform 7.2 ML0 and earlier allows remote authenticated users with certain privileges to obtain sensitive configuration information by leveraging a missing access control.

References