CVE-2024-12663

CVSS 3.1 Score 3.7 of 10 (low)

Details

Published Dec 16, 2024
CWE ID 203
CWE ID 204

Summary

CVE-2024-12663 is a recently disclosed vulnerability affecting the Login component of funnyzpc Mee-Admin up to version 1.6. This issue lies within the /mee/login file and is triggered by manipulating the argument "username". An attacker can exploit this vulnerability remotely, leading to observable response discrepancies. however, the complexity and difficulty of an attack are relatively high, and an exploit for this vulnerability has already been made public. Therefore, it is crucial for users to update their systems to the latest version or implement appropriate security measures to mitigate potential threats.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share