CVE-2024-31369

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Apr 9, 2024
CWE ID 352

Summary

CVE-2024-31369 represents a Cross-Site Request Forgery (CSRF) vulnerability discovered in PenciDesign Soledad. This issue poses a risk to users of Soledad versions ranging from n/a to 8.4.2. CSRF attacks manipulate users into unwittingly executing malicious actions on a website, potentially leading to unintended data modifications or unauthorized actions. The vulnerability allows an attacker to craft a malicious request that, when executed by an affected user, could result in unwanted site modifications or data manipulation. Users are encouraged to update their Soledad installation to a patched version as soon as possible to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Pencidesign Soledad

Affected Vendors

  • Pencidesign