PT-2024-38554 · Unknown · Traccar Server

Reza Zamiri

·

Published

2024-08-13

·

Updated

2025-10-12

·

CVE-2024-7746

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Traccar Server (affected versions not specified)
Description The issue affects the privileged transactions implemented by the Traccar solution, which should otherwise be protected by the authentication mechanism. These transactions could have an impact on any sensitive aspect of the platform, including Confidentiality, Integrity, and Availability. The vulnerability allows Authentication Abuse through the use of default credentials in the Administrator Panel modules.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2024-7746

Affected Products

Traccar Server