PT-2024-33489 · No Fuss Computing · Centurion Erp

Jon-Nfc

·

Published

2024-10-22

·

Updated

2024-10-30

·

CVE-2024-49373

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions No Fuss Computing Centurion ERP versions prior to 1.2.1
Description The issue allows an authenticated user to view projects within organizations they are not a part of.
Recommendations For versions prior to 1.2.1, update to version 1.2.1 to resolve the issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-49373
GHSA-5QMX-PR2F-QHJ5

Affected Products

Centurion Erp