CVE-2024-26263
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Published Feb 15, 2024
CWE ID 284
Summary
CVE-2024-26263 is a vulnerability affecting EBM Technologies' RISWEB software. The issue lies in the inadequate control of URL paths, enabling unauthorized access for attackers. They can browse specific pages and retrieve sensitive data without requiring valid login credentials. This security loophole poses a significant risk to the confidentiality and integrity of protected information.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share