Security Advisory

CVE-2024-45509

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-09-01 00:00:00
Last updated 2024-09-03 15:03:31
Assigner mitre
State PUBLISHED

Description

In MISP through 2.4.196, app/Controller/BookmarksController.php does not properly restrict access to bookmarks data in the case where the user is not an org admin.