The application is vulnerable to an unauthenticated parameter manipulation that allows an attacker to set the credentials to blank giving her access to the admin panel. Also vulnerable to account takeover and arbitrary password change.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2024-04-18T22:06:26.781Z

Updated: 2024-08-01T22:35:34.937Z

Reserved: 2024-01-05T22:07:42.998Z

Link: CVE-2024-22179

cve-icon Vulnrichment

Updated: 2024-08-01T22:35:34.937Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-18T22:15:09.850

Modified: 2024-05-28T17:15:09.547

Link: CVE-2024-22179

cve-icon Redhat

No data.