CVE-2024-10718
CVSS 3.0 Score 5.3 of 10 (medium)
Details
Published Mar 20, 2025
CWE ID 614
Summary
CVE-2024-10718 is a vulnerability affecting phpipam/phpipam version 1.5.1. This issue involves the lack of proper security measures for sensitive cookies during HTTPS sessions. As a result, these cookies may inadvertently be transmitted in plaintext over HTTP, increasing the risk of exposing sensitive information to unauthorized users. The vulnerability has been resolved in version 1.7.0 of the software.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.