CVE-2024-47064
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Published Sep 30, 2024
Updated: Oct 30, 2024
CWE ID 79
CWE ID 81
Summary
CVE-2024-47064 is a vulnerability affecting the Computer Vision Annotation Tool (CVAT). An attacker can manipulate a user into visiting a malicious URL, enabling them to execute unauthorized API calls on behalf of the victim. This access grants the attacker temporary control over the data the user has access to. Address this issue by upgrading to CVAT version 2.19.0 or later.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- CVAT