9.8
CVE-2024-22074
- EPSS 1.01%
- Veröffentlicht 06.06.2024 21:15:48
- Zuletzt bearbeitet 18.03.2025 21:15:23
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Dynamsoft Service 1.8.1025 through 1.8.2013, 1.7.0330 through 1.7.2531, 1.6.0428 through 1.6.1112, 1.5.0625 through 1.5.3116, 1.4.0618 through 1.4.1230, and 1.0.516 through 1.3.0115 has Incorrect Access Control. This is fixed in 1.8.2014, 1.7.4212, 1.6.3212, 1.5.31212, 1.4.3212, and 1.3.3212.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dynamsoft ≫ Dynamsoft Service Version >= 1.0.516 < 1.3.3212
Dynamsoft ≫ Dynamsoft Service Version >= 1.4.1230 < 1.4.3212
Dynamsoft ≫ Dynamsoft Service Version >= 1.5.0625 < 1.5.31212
Dynamsoft ≫ Dynamsoft Service Version >= 1.6.0428 < 1.6.3212
Dynamsoft ≫ Dynamsoft Service Version >= 1.7.0330 < 1.7.4212
Dynamsoft ≫ Dynamsoft Service Version >= 1.8.1025 < 1.8.2014
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.01% | 0.764 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
CWE-284 Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.