Description
Due to insufficient server-side validation, an attacker with login privileges could access certain resources that the attacker should not have access to by changing parameter values.
Published: 2024-03-02
Score: 4.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-22426 Due to insufficient server-side validation, an attacker with login privileges could access certain resources that the attacker should not have access to by changing parameter values.
History

Wed, 19 Mar 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Hikvision Hikcentral Professional
cve-icon MITRE

Status: PUBLISHED

Assigner: hikvision

Published:

Updated: 2025-03-19T15:53:16.696Z

Reserved: 2024-02-04T07:19:37.207Z

Link: CVE-2024-25064

cve-icon Vulnrichment

Updated: 2024-08-01T23:36:21.508Z

cve-icon NVD

Status : Modified

Published: 2024-03-02T03:15:06.177

Modified: 2024-11-21T09:00:10.703

Link: CVE-2024-25064

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses