CVE Published: 13/08/2024 |
CVE Updated: 14/08/2024 |
CVE Year: 2024 Source: Patchstack |
Vendor: Codection |
Product: Import and export users and customers Status : PUBLISHED
CVE-2024-38787 Description
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Codection Import and export users and customers allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Import and export users and customers: from n/a through 1.26.8.
Metrics
CVSS Version: 3.1 |
Base Score: 7.5 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N