ZeroHour

CVE-2024-55075

PoC
CVSS 3.1
5.3 medium
EPSS
<1%p42
Published
()
Modified
Description

Grocy through 4.3.0 allows remote attackers to obtain sensitive information via direct requests to pages that are not shown in the UI, such as calendar and recipes.

Vendors
grocy project
Products
grocy
Weakness
CWE-425
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.