CVE-2024-46310

Incorrect Access Control in Cfx.re FXServer v9601 and earlier allows unauthenticated users to modify and read arbitrary user data via exposed API endpoint
Configurations

No configuration.

History

16 Jan 2025, 18:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
Summary
  • (es) El control de acceso incorrecto en Cfx.re FXServer v9601 y versiones anteriores permite que usuarios no autenticados modifiquen y lean datos arbitrarios de usuarios a través de la API Endpoint expuesta
CWE CWE-281

13 Jan 2025, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-13 19:15

Updated : 2025-01-16 18:15


NVD link : CVE-2024-46310

Mitre link : CVE-2024-46310

CVE.ORG link : CVE-2024-46310


JSON object : View

Products Affected

No product.

CWE
CWE-281

Improper Preservation of Permissions