ID | CVE-2024-55585 | ||||||
Sažetak | In the moPS App through 1.8.618, all users can access administrative API endpoints without additional authentication, resulting in unrestricted read and write access, as demonstrated by /api/v1/users/resetpassword. | ||||||
Reference | |||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | None | ||||||
Zadnje važnije ažuriranje | 09-06-2025 - 12:15 | ||||||
Objavljeno | 07-06-2025 - 19:15 |