Description
Alf.io is a free and open source event attendance management system. In versions prior to 2.0-M4-2402 users can access the admin area even after being invalidated/deleted. This issue has been addressed in version 2.0-M4-2402. All users are advised to upgrade. There are no known workarounds for this vulnerability.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-22948 | Alf.io is a free and open source event attendance management system. In versions prior to 2.0-M4-2402 users can access the admin area even after being invalidated/deleted. This issue has been addressed in version 2.0-M4-2402. All users are advised to upgrade. There are no known workarounds for this vulnerability. |
References
History
Wed, 18 Dec 2024 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Alf
Alf alf |
|
| CPEs | cpe:2.3:a:alf:alf:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Alf
Alf alf |
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-06T15:49:15.967Z
Reserved: 2024-02-08T22:26:33.512Z
Link: CVE-2024-25628
Updated: 2024-08-01T23:44:09.877Z
Status : Analyzed
Published: 2024-02-16T21:15:08.657
Modified: 2024-12-18T19:43:00.970
Link: CVE-2024-25628
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD