"value":"The DevExpress Resource Handler (ASPxHttpHandlerModule) in DevExpress ASP.NET Web Forms Build v19.2.3 does not verify the referenced objects in the /DXR.axd?r= HTTP GET parameter. This leads to an Insecure Direct Object References (IDOR) vulnerability which allows attackers to access the application source code."
},
{
"lang":"es",
"value":"DevExpress Resource Handler (ASPxHttpHandlerModule) en DevExpress ASP.NET Web Forms versi\u00f3n v19.2.3, no verifica los objetos referenciados en el par\u00e1metro /DXR.axd?r= HTTP GET. Esto conlleva a una vulnerabilidad de Referencias Directas a Objetos Inseguros (IDOR) que permite a atacantes acceder al c\u00f3digo fuente de la aplicaci\u00f3n"