CVE-2024-47085
CVE-2024-47085
Título es
CVE-2024-47085
Jue, 19/09/2024 – 06:15
Tipo
CWE-359
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2024-47085
Descripción en
This vulnerability exists in Apex Softcell LD DP Back Office due to improper validation of certain parameters “cCdslClicentcode” and “cLdClientCode” in the API endpoint. An authenticated remote attacker could exploit this vulnerability by manipulating parameters in the API request body leading to exposure of sensitive information belonging to other users.
19/09/2024
19/09/2024
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
Pendiente de análisis
Enviar en el boletín
Off
