PT-2024-24847 · Unknown · Pavex Embed Google Photos Album

Lvt-Tholv2K

·

Published

2024-04-24

·

Updated

2024-04-24

·

CVE-2024-32775

CVSS v3.1

4.9

Medium

VectorAV:N/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Pavex Embed Google Photos album versions n/a through 2.1.9
Description The issue is a Server-Side Request Forgery (SSRF) vulnerability. This means an attacker can potentially trick the server into making unauthorized requests, leading to various malicious outcomes. No information is provided about the estimated number of potentially affected devices worldwide or details about real-world incidents where this issue was exploited.
Recommendations For versions n/a through 2.1.9, update to a version later than 2.1.9 to resolve the issue. At the moment, there is no information about additional mitigation measures for this vulnerability.

Fix

SSRF

Weakness Enumeration

Related Identifiers

CVE-2024-32775

Affected Products

Pavex Embed Google Photos Album