Beveiligingsadvies

CVE-2024-23734

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-04-10 00:00:00
Laatst bijgewerkt 2024-10-31 15:16:58
Toegewezen door mitre
CVSS-score 5.2
Status PUBLISHED

Beschrijving

Cross Site Request Forgery vulnerability in in the upload functionality of the User Profile pages in savignano S/Notify before 2.0.1 for Bitbucket allow attackers to replace S/MIME certificate or PGP keys for arbitrary users via crafted link.