We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-6426

Information exposure vulnerability vulnerability in MESbook



AssignerINCIBE
Reserved2024-07-01
Published2024-07-03
Updated2024-08-01

Description

Information exposure vulnerability in MESbook 20221021.03 version, the exploitation of which could allow a local attacker, with user privileges, to access different resources by changing the API value of the application.



HIGH: 8.1CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

Problem types

CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

Product status

Default status
unaffected

20221021.03
affected

Credits

David Utón Amaya (m3n0sd0n4ld) 0x40049f8f20

References

https://www.incibe.es/en/incibe-cert/notices/aviso-sci/multiple-vulnerabilities-mesbook

cve.org CVE-2024-6426

nvd.nist.gov CVE-2024-6426

Download JSON

Share this page
https://cve.threatint.com
Subscribe to our newsletter to learn more about our work.