PT-2024-30406 · Eyecix · Eyecix Jobsearch

Dave Jong

·

Published

2024-08-19

·

Updated

2024-08-23

·

CVE-2024-43245

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions eyecix JobSearch versions n/a through 2.3.4
Description The issue is related to improper privilege management, allowing privilege escalation. This problem affects eyecix JobSearch, enabling unauthorized access to sensitive data and potentially leading to further security breaches.
Recommendations For versions n/a through 2.3.4, update to a version later than 2.3.4 to resolve the issue. As a temporary workaround, consider restricting access to sensitive features and data to minimize the risk of exploitation.

Fix

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2024-43245

Affected Products

Eyecix Jobsearch