CVE-2024-45789 - VMware aiM-Star Infinite Account Registration Bypass

1 month ago 24
ARTICLE AD BOX
CVE ID : CVE-2024-45789
Published : Sept. 11, 2024, 12:15 p.m. | 25 minutes ago
Description : This vulnerability exists in Reedos aiM-Star version 2.0.1 due to improper validation of the ‘mode’ parameter in the API endpoint used during the registration process. An authenticated remote attacker could exploit this vulnerability by manipulating parameter in the API request body on the vulnerable application. Successful exploitation of this vulnerability could allow the attacker to bypass certain constraints in the registration process leading to creation of multiple accounts.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article