Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-3566 | TeamPass before 3.1.3.1 does not properly check whether a mail_me (aka action_mail) operation is on behalf of an administrator or manager. |
Github GHSA |
GHSA-7rm3-4w6j-8xx4 | TeamPass mail_me operation authorization issue |
Mon, 29 Sep 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:teampass:teampass:*:*:*:*:*:*:*:* |
Mon, 30 Dec 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 30 Dec 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-266 | |
| Metrics |
cvssV3_1
|
Mon, 30 Dec 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | TeamPass before 3.1.3.1 does not properly check whether a mail_me (aka action_mail) operation is on behalf of an administrator or manager. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-12-30T16:53:18.734Z
Reserved: 2024-10-28T00:00:00.000Z
Link: CVE-2024-50702
Updated: 2024-12-30T16:53:15.177Z
Status : Analyzed
Published: 2024-12-30T15:15:10.567
Modified: 2025-09-29T17:51:57.043
Link: CVE-2024-50702
No data.
OpenCVE Enrichment
Updated: 2025-07-12T22:23:28Z
EUVD
Github GHSA