Lack of validation of origin in federation API in Conduit, allowing any remote server to impersonate any user from any server in most EDUs
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-06-25 13:15
Updated : 2024-06-25 18:50
NVD link : CVE-2024-6301
Mitre link : CVE-2024-6301
CVE.ORG link : CVE-2024-6301
JSON object : View
Products Affected
No product.
CWE
CWE-346
Origin Validation Error