The access control in the Electronic Official Document Management System from 2100 TECHNOLOGY is not properly implemented, allowing remote attackers with regular privileges to access the account settings functionality and create an administrator account.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: twcert
Published: 2024-07-15T02:23:06.055Z
Updated: 2024-08-01T21:41:04.596Z
Reserved: 2024-07-15T02:05:03.242Z
Link: CVE-2024-6737
Vulnrichment
Updated: 2024-08-01T21:41:04.596Z
NVD
Status : Analyzed
Published: 2024-07-15T03:15:03.027
Modified: 2024-07-16T14:06:09.530
Link: CVE-2024-6737
Redhat
No data.