CHANGING Mobile One Time Password does not properly filter parameters for the file download functionality, allowing remote attackers with administrator privilege to read arbitrary file on the system.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: twcert
Published: 2024-07-01T02:39:14.560Z
Updated: 2024-08-01T19:32:42.703Z
Reserved: 2024-04-01T02:01:30.133Z
Link: CVE-2024-3122
Vulnrichment
Updated: 2024-08-01T19:32:42.703Z
NVD
Status : Awaiting Analysis
Published: 2024-07-01T05:15:04.693
Modified: 2024-07-01T12:37:24.220
Link: CVE-2024-3122
Redhat
No data.