PT-2024-39864 · Nextgeography · Nextgeography Ng Analyser
Tunahan Tekeoglu
·
Published
2024-12-17
·
Updated
2024-12-17
·
CVE-2024-9819
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
NextGeography NG Analyser versions prior to 2.2.711
Description
The issue allows for unauthorized access through a user-controlled key, enabling misuse of functionality.
Recommendations
For versions prior to 2.2.711, update to version 2.2.711 or later to resolve the issue.
Fix
IDOR
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Nextgeography Ng Analyser