• caglararli@hotmail.com
  • 05386281520

CVE-2024-48932 | IceWhaleTech ZimaOS up to 1.2.4 API Endpoint /v1/users/name` access control (GHSA-9mrr-px2c-w42c)

Çağlar Arlı      -    25 Views

CVE-2024-48932 | IceWhaleTech ZimaOS up to 1.2.4 API Endpoint /v1/users/name` access control (GHSA-9mrr-px2c-w42c)

A vulnerability was found in IceWhaleTech ZimaOS up to 1.2.4. It has been declared as critical. This vulnerability affects unknown code of the file /v1/users/name` of the component API Endpoint. The manipulation leads to improper access controls. This vulnerability was named CVE-2024-48932. The attack can be initiated remotely. There is no exploit available. It is recommended to upgrade the affected component.