CVE-2024-8774 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

The SIMPLE.ERP client stores superuser password in a recoverable format, allowing any authenticated SIMPLE.ERP user to escalate privileges to a database adminis…
High CVSS: 7.7

CVE-2024-8774

The SIMPLE.ERP client stores superuser password in a recoverable format, allowing any authenticated SIMPLE.ERP user to escalate privileges to a database administrator.

This issue affect SIMPLE.ERP from 6.20 through 6.30. Only the 6.30 version received a patch 6.30@a03.9, which removed the vulnerability. Versions 6.20 and 6.25 remain unpatched.
Vendor
-
Product
-
CWE
CWE-257
Yayın Tarihi
2025-03-24 13:15:25
Güncelleme
2025-03-27 16:44:44
Source Identifier
cvd@cert.pl
KEV Date Added
-

Kategoriler

Referanslar