PT-2024-28297 · Vaethink · Vaethink
Fltys
·
Published
2024-07-09
·
Updated
2025-03-20
·
CVE-2024-38970
CVSS v3.1
4.9
Medium
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
vaeThink version 1.0.2
Description
The issue concerns Information Disclosure via the system backend, specifically affecting the access management administrator function.
Recommendations
For vaeThink version 1.0.2, consider restricting access to the system backend and access management administrator function until a fix is available.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Vaethink