A user who is privileged already `manager` or `admin` can set their profile picture via the frontend API using a relative filepath to then user the PFP GET API to download any valid files.
The attacker would have to have been granted privileged permissions to the system before executing this attack.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: @huntr_ai
Published: 2024-02-28T04:52:21.831Z
Updated: 2024-08-22T19:40:03.830Z
Reserved: 2024-01-15T00:56:12.183Z
Link: CVE-2024-0550
Vulnrichment
Updated: 2024-08-01T18:11:35.606Z
NVD
Status : Awaiting Analysis
Published: 2024-02-28T05:15:08.770
Modified: 2024-02-28T14:06:45.783
Link: CVE-2024-0550
Redhat
No data.