Security Advisory

CVE-2024-11216

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-03-05 13:02:20
Last updated 2026-06-02 06:38:51
Assigner TR-CERT
CVSS score 7.6
State PUBLISHED

Description

Authorization Bypass Through User-Controlled Key, Exposure of Private Personal Information to an Unauthorized Actor vulnerability in PozitifIK Pik Online allows Account Footprinting, Session Hijacking. This issue affects Pik Online: before 3.1.5.