e-recruit security

    e-recruit security hole

    Hi everyone I found this , maybe some of you notice before but I want to share with you : the URL to connect with e-recruit module has this structure : https://xxxxxx.xxxxxx.com/jde/servlet/com.jdedwards.runtime.shortcut.ShortcutLauncher?scApp=P08400&scForm=W08400A I notice if I change from...