Keyfactor Command before 12.5.0 has Incorrect Access Control: access tokens are over permissioned, aka 64099. The fixed versions are 11.5.1.1, 11.5.2.1, 11.5.3.1, 11.5.4.5, 11.5.6.1, 11.6.0, 12.2.0.1, 12.3.0.1, 12.4.0.1, 12.5.0, and 24.4.0.
Metrics
Affected Vendors & Products
References
History
Sat, 21 Dec 2024 00:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-276 | |
Metrics |
cvssV3_1
|
Wed, 18 Dec 2024 18:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Keyfactor Command before 12.5.0 has Incorrect Access Control: access tokens are over permissioned, aka 64099. The fixed versions are 11.5.1.1, 11.5.2.1, 11.5.3.1, 11.5.4.5, 11.5.6.1, 11.6.0, 12.2.0.1, 12.3.0.1, 12.4.0.1, 12.5.0, and 24.4.0. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-12-18T00:00:00
Updated: 2024-12-20T23:29:51.166Z
Reserved: 2024-10-14T00:00:00
Link: CVE-2024-49202
Vulnrichment
Updated: 2024-12-18T19:35:49.364Z
NVD
Status : Awaiting Analysis
Published: 2024-12-18T19:15:11.203
Modified: 2024-12-21T00:15:28.090
Link: CVE-2024-49202
Redhat
No data.