An issue in trojan v.2.0.0 through v.2.15.3 allows a remote attacker to escalate privileges via the initialization interface /auth/register.
References
Link | Resource |
---|---|
https://github.com/ainrm/Jrohy-trojan-unauth-poc/blob/main/README.en.md | Exploit Third Party Advisory |
Configurations
History
03 Jul 2025, 01:12
Type | Values Removed | Values Added |
---|---|---|
First Time |
Jrohy trojan
Jrohy |
|
CPE | cpe:2.3:a:jrohy:trojan:*:*:*:*:*:*:*:* | |
References | () https://github.com/ainrm/Jrohy-trojan-unauth-poc/blob/main/README.en.md - Exploit, Third Party Advisory |
19 Mar 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-276 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
18 Feb 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : unknown |
CWE |
08 Feb 2025, 03:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-269 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
07 Feb 2025, 22:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-02-07 22:15
Updated : 2025-07-03 01:12
NVD link : CVE-2024-55215
Mitre link : CVE-2024-55215
CVE.ORG link : CVE-2024-55215
JSON object : View
Products Affected
jrohy
- trojan
CWE
CWE-276
Incorrect Default Permissions