CVE-2024-54267

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Dec 13, 2024
CWE ID 862

Summary

CVE-2024-54267 is a Missing Authorization vulnerability affecting CreativeMindsSolutions' CM Answers software. This issue stems from insufficient access control security checks in the application, enabling unauthorized users to exploit incorrectly configured security levels. The vulnerability affects CM Answers versions from n/a through 3.2.6. Successful exploitation could potentially lead to unauthorized access or modification of data, posing a significant security risk. It is recommended that users upgrade to a secure version as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share