CVE-2024-46609

An access control issue in the CheckVip function in UserController.java of IceCMS v3.4.7 and before allows unauthenticated attackers to access and returns all user information, including passwords
Configurations

No configuration.

History

No history.

Information

Published : 2024-09-25 01:15

Updated : 2024-09-27 16:35


NVD link : CVE-2024-46609

Mitre link : CVE-2024-46609

CVE.ORG link : CVE-2024-46609


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control