CVE-2024-0795
CVSS V2 None
CVSS V3 None
Description
If an attacked was given access to an instance with the admin or manager role there is no backend authentication that would prevent the attacked from creating a new user with an `admin` role and then be able to use this new account to have elevated privileges on the instance
Overview
- CVE ID
- CVE-2024-0795
- Assigner
- @huntr_ai
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-03-02T21:16:46.411Z
- Last Modified Date
- 2024-03-02T21:16:46.411Z
Weakness Enumerations
References
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-0795 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-0795 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-26 10:45:40 | Added to TrackCVE |