CVE-2024-26263

EBM Technologies RISWEB's specific URL path is not properly controlled by permission, allowing attackers to browse specific pages and query sensitive data without login.
Configurations

No configuration.

History

14 Oct 2024, 07:15

Type Values Removed Values Added
CWE CWE-284 CWE-306

15 Feb 2024, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-15 03:15

Updated : 2024-10-14 07:15


NVD link : CVE-2024-26263

Mitre link : CVE-2024-26263

CVE.ORG link : CVE-2024-26263


JSON object : View

Products Affected

No product.

CWE
CWE-306

Missing Authentication for Critical Function