Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-r6ph-5fp2-3w2v | Microcks's POST /api/import and POST /api/export endpoints allow non-administrator access |
Wed, 21 Aug 2024 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | NVD-CWE-noinfo |
Mon, 19 Aug 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microcks
Microcks microcks |
|
| Weaknesses | CWE-269 | |
| CPEs | cpe:2.3:a:microcks:microcks:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microcks
Microcks microcks |
|
| Metrics |
cvssV3_1
|
Mon, 19 Aug 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 19 Aug 2024 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In Microcks before 1.10.0, the POST /api/import and POST /api/export endpoints allow non-administrator access. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-19T15:58:39.325Z
Reserved: 2024-08-19T00:00:00.000Z
Link: CVE-2024-44076
Updated: 2024-08-19T15:58:15.605Z
Status : Analyzed
Published: 2024-08-19T03:15:03.883
Modified: 2024-08-21T12:33:42.487
Link: CVE-2024-44076
No data.
OpenCVE Enrichment
No data.
Github GHSA