Insecure Permissions vulnerability in lin-CMS Springboot v.0.2.1 and before allows a remote attacker to obtain sensitive information via the login method in the UserController.java component.
History

Thu, 22 Aug 2024 18:45:00 +0000

Type Values Removed Values Added
First Time appeared Talelin
Talelin lin-cms-spring-boot
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:a:talelin:lin-cms-spring-boot:*:*:*:*:*:*:*:*
Vendors & Products Talelin
Talelin lin-cms-spring-boot
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-07-19T00:00:00

Updated: 2024-08-02T04:46:52.368Z

Reserved: 2024-07-18T00:00:00

Link: CVE-2024-41600

cve-icon Vulnrichment

Updated: 2024-07-26T17:56:57.160Z

cve-icon NVD

Status : Modified

Published: 2024-07-19T18:15:05.727

Modified: 2024-11-21T09:32:49.507

Link: CVE-2024-41600

cve-icon Redhat

No data.