The disabling function of the user registration page for Heimavista Rpage and Epage is not properly implemented, allowing remote attackers to complete user registration on sites where user registration is supposed to be disabled.
References
Link | Resource |
---|---|
https://www.twcert.org.tw/tw/cp-132-7696-0951f-1.html |
Configurations
No configuration.
History
14 Oct 2024, 07:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-1220 |
13 Mar 2024, 03:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-03-13 03:15
Updated : 2024-10-14 07:15
NVD link : CVE-2024-2412
Mitre link : CVE-2024-2412
JSON object : View
Products Affected
No product.
CWE
CWE-1220
Insufficient Granularity of Access Control