A vulnerability was found in Nway Pro 9. It has been rated as problematic. Affected by this issue is the function ajax_login_submit_form of the file login\index.php of the component Argument Handler. The manipulation of the argument rsargs[] leads to information exposure through error message. The attack may be launched remotely. VDB-255266 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 04 Mar 2025 13:00:00 +0000

Type Values Removed Values Added
First Time appeared Nway
Nway nway Pro
CPEs cpe:2.3:a:nway:nway_pro:9:*:*:*:*:*:*:*
Vendors & Products Nway
Nway nway Pro

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2024-08-13T13:40:21.515Z

Reserved: 2024-02-29T13:28:18.062Z

Link: CVE-2024-2009

cve-icon Vulnrichment

Updated: 2024-08-01T18:56:22.482Z

cve-icon NVD

Status : Analyzed

Published: 2024-02-29T20:15:41.870

Modified: 2025-03-04T12:25:10.853

Link: CVE-2024-2009

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.