ID:10963 - Exploit for Missing Authentication for Critical Function in Expedition - CVE-2024-5910

 
Main Vulnerability Database Exploits ID:10963 - Exploit for Missing Authentication for Critical Function in Expedition - CVE-2024-5910

ID:10963 - Exploit for Missing Authentication for Critical Function in Expedition - CVE-2024-5910

Published: December 6, 2024


Vulnerability identifier: #VU94368
Vulnerability risk: High
CVE-ID: CVE-2024-5910
CWE-ID: CWE-306
Exploitation vector: Remote access
Vulnerable software:
Expedition

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to bypass authentication process.

The vulnerability exists due to missing authentication for critical function. A remote attacker can takeover the Expedition admin account.


Remediation

Install updates from vendor's website.