Логотип exploitDog
bind:CVE-2024-13040
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-13040

Количество 2

Количество 2

nvd логотип

CVE-2024-13040

около 1 года назад

The QOCA aim from Quanta Computer has an Authorization Bypass Through User-Controlled Key vulnerability. By controlling the user ID parameter, remote attackers with regular privileges could access certain features as any user, modify any user's account information and privileges, leading to privilege escalation.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-cxpg-8frp-cv2x

около 1 года назад

The QOCA aim from Quanta Computer has an Authorization Bypass Through User-Controlled Key vulnerability. By controlling the user ID parameter, remote attackers with regular privileges could access certain features as any user, modify any user's account information and privileges, leading to privilege escalation.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-13040

The QOCA aim from Quanta Computer has an Authorization Bypass Through User-Controlled Key vulnerability. By controlling the user ID parameter, remote attackers with regular privileges could access certain features as any user, modify any user's account information and privileges, leading to privilege escalation.

CVSS3: 8.8
0%
Низкий
около 1 года назад
github логотип
GHSA-cxpg-8frp-cv2x

The QOCA aim from Quanta Computer has an Authorization Bypass Through User-Controlled Key vulnerability. By controlling the user ID parameter, remote attackers with regular privileges could access certain features as any user, modify any user's account information and privileges, leading to privilege escalation.

CVSS3: 8.8
0%
Низкий
около 1 года назад

Уязвимостей на страницу