Livechat messages can be leaked by combining two NoSQL injections affecting livechat:loginByToken (pre-authentication) and livechat:loadHistory.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-36639 | Livechat messages can be leaked by combining two NoSQL injections affecting livechat:loginByToken (pre-authentication) and livechat:loadHistory. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://hackerone.com/reports/2580062 |
|
History
No history.
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-08-02T03:50:56.177Z
Reserved: 2024-06-08T01:04:07.093Z
Link: CVE-2024-37405
Updated: 2024-07-15T15:07:23.883Z
Status : Awaiting Analysis
Published: 2024-07-12T16:15:03.207
Modified: 2024-11-21T09:23:47.573
Link: CVE-2024-37405
No data.
OpenCVE Enrichment
No data.
EUVD