PT-2024-30816 · Themeum · Themeum Droip
Dave Jong
·
Published
2024-08-29
·
Updated
2024-08-30
·
CVE-2024-43954
CVSS v3.1
6.3
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
Themeum Droip versions 1.1.1 and earlier
Description
The issue is related to an Incorrect Authorization vulnerability, allowing users to access functionality not properly constrained by Access Control Lists (ACLs). This means that certain functions or features can be accessed by users who should not have permission to do so.
Recommendations
For Themeum Droip versions 1.1.1 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Incorrect Authorization
Missing Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Themeum Droip