CVE-2024-45787

This vulnerability exists in Reedos aiM-Star version 2.0.1 due to transmission of sensitive information in plain text in certain API endpoints. An authenticated remote attacker could exploit this vulnerability by manipulating a parameter through API request URL and intercepting response of the API request leading to exposure of sensitive information belonging to other users.
Configurations

Configuration 1 (hide)

cpe:2.3:a:reedos:aim-star:2.0.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-09-11 12:15

Updated : 2024-09-18 18:15


NVD link : CVE-2024-45787

Mitre link : CVE-2024-45787

CVE.ORG link : CVE-2024-45787


JSON object : View

Products Affected

reedos

  • aim-star
CWE
CWE-359

Exposure of Private Personal Information to an Unauthorized Actor

NVD-CWE-Other