CVE-2024-38392

Pexip Infinity Connect before 1.13.0 lacks sufficient authenticity checks during the loading of resources, and thus remote attackers can cause the application to run untrusted code.
Configurations

No configuration.

History

03 Apr 2025, 14:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
CWE CWE-863
Summary
  • (es) PEXIP Infinity Connect antes de 1.13.0 carece de verificaciones de autenticidad suficientes durante la carga de recursos y, por lo tanto, los atacantes remotos pueden hacer que la aplicación ejecute código no confiable.

02 Apr 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-02 21:15

Updated : 2025-04-07 14:18


NVD link : CVE-2024-38392

Mitre link : CVE-2024-38392

CVE.ORG link : CVE-2024-38392


JSON object : View

Products Affected

No product.

CWE
CWE-863

Incorrect Authorization