PT-2024-20248 · Setor Informatica · Setor Informatica Sil

Elizeu Das Dores

·

Published

2024-02-08

·

Updated

2024-09-05

·

CVE-2024-24034

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Setor Informatica S.I.L version 3.0
Description The issue allows remote attackers to execute arbitrary code via Open Redirect, specifically through the hprinter parameter.
Recommendations For Setor Informatica S.I.L version 3.0, avoid using the hprinter parameter in affected API endpoints until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Open Redirect

Weakness Enumeration

Related Identifiers

CVE-2024-24034

Affected Products

Setor Informatica Sil