CVE-2024-45187
CVE-2024-45187
Título es
CVE-2024-45187
Vie, 23/08/2024 – 19:15
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2024-45187
Descripción en
Guest users in the Mage AI framework that remain logged in after their accounts are deleted, are mistakenly given high privileges and specifically given access to remotely execute arbitrary code through the Mage AI terminal server
23/08/2024
23/08/2024
Vector CVSS:3.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Gravedad 3.1 (CVSS 3.1 Base Score)
7.10
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
HIGH
Referencias
Enviar en el boletín
Off