The application is vulnerable to an unauthenticated parameter
manipulation that allows an attacker to set the credentials to blank
giving her access to the admin panel. Also vulnerable to account
takeover and arbitrary password change.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2024-04-18T22:06:26.781Z
Updated: 2024-08-01T22:35:34.937Z
Reserved: 2024-01-05T22:07:42.998Z
Link: CVE-2024-22179
Vulnrichment
Updated: 2024-08-01T22:35:34.937Z
NVD
Status : Awaiting Analysis
Published: 2024-04-18T22:15:09.850
Modified: 2024-05-28T17:15:09.547
Link: CVE-2024-22179
Redhat
No data.