PT-2024-21258 · Alt Linux · Alt Linux

Ba7Man

·

Published

2024-02-19

·

Updated

2024-06-19

·

CVE-2024-25983

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description The issue is related to insufficient checks in a web service, allowing users to add comments to another user's dashboard when it was not otherwise available, such as on their profile page. There is no information provided about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

IDOR

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2024-8851
ALT-PU-2024-9067
BIT-MOODLE-2024-25983
CVE-2024-25983
GHSA-9R26-5W88-QHP9

Affected Products

Alt Linux