Логотип exploitDog
bind:CVE-2024-38874
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-38874

Количество 2

Количество 2

nvd логотип

CVE-2024-38874

больше 1 года назад

An issue was discovered in the events2 (aka Events 2) extension before 8.3.8 and 9.x before 9.0.6 for TYPO3. Missing access checks in the management plugin lead to an insecure direct object reference (IDOR) vulnerability with the potential to activate or delete various events for unauthenticated users.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-cchp-3rq6-69wj

больше 1 года назад

events2 TYPO3 extension insecure direct object reference (IDOR) vulnerability

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-38874

An issue was discovered in the events2 (aka Events 2) extension before 8.3.8 and 9.x before 9.0.6 for TYPO3. Missing access checks in the management plugin lead to an insecure direct object reference (IDOR) vulnerability with the potential to activate or delete various events for unauthenticated users.

CVSS3: 5.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-cchp-3rq6-69wj

events2 TYPO3 extension insecure direct object reference (IDOR) vulnerability

CVSS3: 5.4
0%
Низкий
больше 1 года назад

Уязвимостей на страницу