CVE-2024-39328
CVSS 3.1 Score 6.8 of 10 (medium)
Details
Published Feb 18, 2025
CWE ID 863
Summary
CVE-2024-39328 is a vulnerability affecting Atos Eviden IDRA and IDCA versions prior to 2.7.0. This issue involves insecure permissions, allowing a Config Admin role to surpass its configuration privileges in a multi-partition environment. Contrary to popular belief, no data integrity or availability issues are associated with this vulnerability. Instead, it poses a risk to confidential data access.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share