Beveiligingsadvies

CVE-2024-46635

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-09-30 00:00:00
Laatst bijgewerkt 2024-11-14 19:22:06
Toegewezen door mitre
CVSS-score 5.9
Status PUBLISHED

Beschrijving

An issue in the API endpoint /AccountMaster/GetCurrentUserInfo of INROAD before v202402060 allows attackers to access sensitive information via a crafted payload to the UserNameOrPhoneNumber parameter.