Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-42270 | This vulnerability exists in Apex Softcell LD Geo due to improper validation of the certain parameters (Client ID, DPID or BOID) in the API endpoint. An authenticated remote attacker could exploit this vulnerability by manipulating parameters in the API request body leading to exposure of sensitive information belonging to other users. |
Solution
Upgrade Apex Softcell LD Geo to version 4.0.0.7
Workaround
No workaround given by the vendor.
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 26 Sep 2024 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apexsoftcell ld Dp Back Office
|
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:apexsoftcell:ld_dp_back_office:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Apexsoftcell ld Dp Back Office
|
|
| Metrics |
cvssV3_1
|
Thu, 19 Sep 2024 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apexsoftcell
Apexsoftcell ld Geo |
|
| CPEs | cpe:2.3:a:apexsoftcell:ld_geo:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Apexsoftcell
Apexsoftcell ld Geo |
|
| Metrics |
ssvc
|
Thu, 19 Sep 2024 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | This vulnerability exists in Apex Softcell LD Geo due to improper validation of the certain parameters (Client ID, DPID or BOID) in the API endpoint. An authenticated remote attacker could exploit this vulnerability by manipulating parameters in the API request body leading to exposure of sensitive information belonging to other users. | |
| Title | Information Disclosure Vulnerability | |
| Weaknesses | CWE-359 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: CERT-In
Published:
Updated: 2024-09-19T13:49:16.221Z
Reserved: 2024-09-18T08:36:36.215Z
Link: CVE-2024-47087
Updated: 2024-09-19T13:49:11.539Z
Status : Analyzed
Published: 2024-09-19T07:15:02.360
Modified: 2024-09-26T15:25:51.467
Link: CVE-2024-47087
No data.
OpenCVE Enrichment
No data.
EUVD