ForLogic Qualiex v1 and v3 has weak token expiration. This allows remote unauthenticated privilege escalation and access to sensitive data via token reuse.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-09-02T16:08:48

Updated: 2024-08-04T15:05:11.905Z

Reserved: 2020-08-13T00:00:00

Link: CVE-2020-24030

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-09-02T17:15:12.203

Modified: 2020-09-10T15:03:48.343

Link: CVE-2020-24030

cve-icon Redhat

No data.