CVE-2024-1144
Improper Access Control at Alma Devklan Blog
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.5EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
19 Mar 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Improper access control vulnerability in Devklan's Alma Blog that affects versions 2.1.10 and earlier. This vulnerability could allow an unauthenticated user to access the application's functionalities without the need for credentials.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Affected products
Devklan · Alma BlogWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →