← back
CVE-2024-46310criticalCWE-281

CVE-2024-46310

43Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendcvss 9.1epss 2.4%
exploitation probability
2.4%top 17% of all CVEs
observed exploitation
nono source reports it
Incorrect Access Control in Cfx.re FXServer v9601 and earlier allows unauthenticated users to modify and read arbitrary user data via exposed API endpoint
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Affected products
n/a · n/a