CVE-2024-3507

Improper privilege management vulnerability in Lunar software that affects versions 6.0.2 through 6.6.0. This vulnerability allows an attacker to perform a secondary process injection into the Lunar application and abuse those rights to access sensitive user information.
CVSS

No CVSS.

Configurations

No configuration.

History

09 May 2024, 09:15

Type Values Removed Values Added
References
  • {'url': 'https://www.incibe.es/en/incibe-cert/notices/aviso/cross-site-scripting-vulnerability-lunar', 'name': 'https://www.incibe.es/en/incibe-cert/notices/aviso/cross-site-scripting-vulnerability-lunar', 'tags': [], 'refsource': ''}
  • () https://www.incibe.es/en/incibe-cert/notices/aviso/privilege-escalation-vulnerability-lunarĀ -

08 May 2024, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-08 11:15

Updated : 2024-05-09 09:15


NVD link : CVE-2024-3507

Mitre link : CVE-2024-3507


JSON object : View

Products Affected

No product.

CWE
CWE-269

Improper Privilege Management