CVE-2024-48955
CVE-2024-48955: Broken access control vulnerability in NetAdmin 4.030319 allows attackers to gain unauthorized access. This issue stems from unencrypted data transmission and lack of session authorization validation when assembling functionality menus. An attacker can exploit this by copying browser content from a user with elevated privileges, effectively impersonating them to access sensitive functionalities.
Despite a CVSS score of 0, indicating a seemingly low base severity, the presence of 'In The Wild' tag and a SOCRadar Vulnerability Risk Score (SVRS) of 30 suggests some level of active exploitation or emerging risk. While not critical (SVRS above 80), CVE-2024-48955 poses a risk of privilege escalation. Organizations using NetAdmin 4.030319 should implement immediate session validation and encryption to prevent potential data breaches and unauthorized access.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.