Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-27364 | The disabling function of the user registration page for Heimavista Rpage and Epage is not properly implemented, allowing remote attackers to complete user registration on sites where user registration is supposed to be disabled. |
Solution
Update Rpage to versions later than v5.4.103.20231111 Update Epage to versions later than v3.0.106.20231112
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.twcert.org.tw/tw/cp-132-7696-0951f-1.html |
|
Mon, 14 Oct 2024 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 |
Mon, 14 Oct 2024 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Heimavista
Heimavista epage Heimavista rpage |
|
| CPEs | cpe:2.3:a:heimavista:epage:*:*:*:*:*:*:*:* cpe:2.3:a:heimavista:rpage:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Heimavista
Heimavista epage Heimavista rpage |
|
| Metrics |
ssvc
|
Mon, 14 Oct 2024 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-1220 |
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-10-14T06:12:23.993Z
Reserved: 2024-03-13T02:04:03.661Z
Link: CVE-2024-2412
Updated: 2024-08-01T19:11:53.516Z
Status : Awaiting Analysis
Published: 2024-03-13T03:15:06.577
Modified: 2024-11-21T09:09:41.943
Link: CVE-2024-2412
No data.
OpenCVE Enrichment
No data.
EUVD