CVE-2024-33647

CVSS V2 None CVSS V3 None
Description
A vulnerability has been identified in Polarion ALM (All versions < V2404.0). The Apache Lucene based query engine in the affected application lacks proper access controls. This could allow an authenticated user to query items beyond the user's allowed projects.
Overview
  • CVE ID
  • CVE-2024-33647
  • Assigner
  • siemens
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-05-14T10:03:08.350Z
  • Last Modified Date
  • 2024-06-04T17:43:52.579Z
History
Created Old Value New Value Data Type Notes
2024-06-26 05:28:08 Added to TrackCVE