ZeroHour

CVE-2024-3122

CVSS 3.1
4.9 medium
EPSS
<1%p47
Published
()
Modified
Description

CHANGING Mobile One Time Password does not properly filter parameters for the file download functionality, allowing remote attackers with administrator privilege to read arbitrary file on the system.

Weakness
CWE-23
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.