CVE-2024-48310
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Jan 28, 2025
Updated: Jan 29, 2025
CWE ID 798
Summary
CVE-2024-48310: AutoLib Software Systems OPAC version 20.10 has been identified with multiple API keys exposed in the source code. These keys can be exploited by attackers to gain unauthorized access to the backend API and potentially sensitive information. This vulnerability poses a significant risk and requires immediate attention from users to secure their systems. It is recommended that affected parties update to the latest version of OPAC or implement access controls and encryption for their API keys to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share