CVE-2024-42798

An Incorrect Access Control vulnerability was found in /music/index.php?page=user_list and /music/index.php?page=edit_user in Kashipara Music Management System v1.0. This allows a low privileged attacker to take over the administrator account.
Configurations

No configuration.

History

18 Sep 2024, 16:35

Type Values Removed Values Added
Summary
  • (es) Se encontrĂ³ una vulnerabilidad de control de acceso incorrecto en /music/index.php?page=user_list y /music/index.php?page=edit_user en Kashipara Music Management System v1.0. Esto permite que un atacante con pocos privilegios tome el control de la cuenta de administrador.
CWE CWE-269
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.6

16 Sep 2024, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-16 20:15

Updated : 2024-09-20 12:31


NVD link : CVE-2024-42798

Mitre link : CVE-2024-42798

CVE.ORG link : CVE-2024-42798


JSON object : View

Products Affected

No product.

CWE
CWE-269

Improper Privilege Management