← volver
CVE-2024-5230

EnvaySoft FleetCart information disclosure

CVSS 6.9 MEDIUMEPSS 18.8%CWE-200
Vexday Risk Score
18Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 6.9EPSS 18.8%KEV nãoPoC Patch
Ciclo de vida
23 may 2024Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A vulnerability has been found in EnvaySoft FleetCart up to 4.1.1 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation of the argument razorpayKeyId leads to information disclosure. The attack can be launched remotely. It is recommended to upgrade the affected component. The identifier VDB-265981 was assigned to this vulnerability.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N
Productos afectados
EnvaySoft · FleetCart

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →