A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected applications can be configured to allow users to manage own users. A local authenticated user with this privilege could use this modify users outside of their own scope as well as to escalate privileges.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-07-09 12:15
Updated : 2024-07-09 18:19
NVD link : CVE-2024-39870
Mitre link : CVE-2024-39870
CVE.ORG link : CVE-2024-39870
JSON object : View
Products Affected
No product.
CWE
CWE-602
Client-Side Enforcement of Server-Side Security