CVE-2024-26263

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Feb 15, 2024
CWE ID 284

Summary

CVE-2024-26263 is a vulnerability affecting EBM Technologies' RISWEB software. The issue lies in the inadequate control of URL paths, enabling unauthorized access for attackers. They can browse specific pages and retrieve sensitive data without requiring valid login credentials. This security loophole poses a significant risk to the confidentiality and integrity of protected information.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share