Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-1643

Опубликовано: 10 апр. 2024
Источник: nvd
CVSS3: 9.1
EPSS Низкий

Описание

By knowing an organization's ID, an attacker can join the organization without permission and gain the ability to read and modify all data within that organization. This vulnerability allows unauthorized access and modification of sensitive information, posing a significant security risk. The flaw is due to insufficient verification of user permissions when joining an organization.

EPSS

Процентиль: 32%
0.00121
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 9.1
github
больше 1 года назад

By knowing an organization's ID, an attacker can join the organization without permission and gain the ability to read and modify all data within that organization. This vulnerability allows unauthorized access and modification of sensitive information, posing a significant security risk. The flaw is due to insufficient verification of user permissions when joining an organization.

EPSS

Процентиль: 32%
0.00121
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-200