Beveiligingsadvies

CVE-2024-50653

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-11-15 00:00:00
Laatst bijgewerkt 2025-03-13 15:33:35
Toegewezen door mitre
CVSS-score 7.5
Status PUBLISHED

Beschrijving

CRMEB <=5.4.0 is vulnerable to Incorrect Access Control. Users can bypass the front-end restriction of only being able to claim coupons once by capturing packets and sending a large number of data packets for coupon collection, achieving unlimited coupon collection.