CVE-2024-41517

Aug. 2, 2024, 5:16 p.m.

Received
CVE has been recently published to the CVE List and has been received by the NVD.

Products

Feripro

  • <= v2.2.3

Source

cve@mitre.org

Tags

CVE-2024-41517 details

Published : Aug. 2, 2024, 5:16 p.m.
Last Modified : Aug. 2, 2024, 5:16 p.m.

Description

An Incorrect Access Control vulnerability in "/admin/benutzer/institution/rechteverwaltung/uebersicht" in Feripro <= v2.2.3 allows remote attackers to get a list of all users and their corresponding privileges.

CVSS Score

1 2 3 4 5 6 7 8 9 10

Weakness

Weakness Name Description

References

URL Source
http://feripro.com cve@mitre.org
http://mecodia.com cve@mitre.org
https://piuswalter.de/blog/multiple-vulnerabilities-in-feripro/ cve@mitre.org
This website uses the NVD API, but is not approved or certified by it.