Users with low privileges (all permissions deselected in the administrator permissions settings) can view certain pages that expose sensitive information such as company names, users' names and surnames, stage names, and monitoring campaigns and their descriptions. In addition, unprivileged users can see and edit the descriptions of tags. At the time of publication of the CVE no patch is available.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: NCSC.ch

Published: 2024-04-10T13:59:41.407Z

Updated: 2024-08-01T19:25:41.342Z

Reserved: 2024-03-20T13:04:47.309Z

Link: CVE-2024-2731

cve-icon Vulnrichment

Updated: 2024-08-01T19:25:41.342Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-10T14:15:07.757

Modified: 2024-11-21T09:10:23.687

Link: CVE-2024-2731

cve-icon Redhat

No data.