CVE-2024-30299
Tenable Vulnerability Disclosure | API Auth Bypass
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Adobe Framemaker Publishing Server versions 2020.3, 2022.2 and earlier are affected by an Improper Authentication vulnerability that could result in privilege escalation. An attacker could exploit this vulnerability to gain unauthorized access or elevated privileges within the application. Exploitation of this issue does not require user interaction.
Las versiones 2020.3, 2022.2 y anteriores de Adobe Framemaker Publishing Server se ven afectadas por una vulnerabilidad de autenticación incorrecta que podría provocar una escalada de privilegios. Un atacante podría aprovechar esta vulnerabilidad para obtener acceso no autorizado o privilegios elevados dentro de la aplicación. La explotación de este problema no requiere la interacción del usuario.
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2024-03-26 CVE Reserved
- 2024-06-13 CVE Published
- 2024-07-16 EPSS Updated
- 2024-08-02 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-287: Improper Authentication
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://helpx.adobe.com/security/products/framemaker-publishing-server/apsb24-38.html | 2024-07-15 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Adobe Search vendor "Adobe" | Framemaker Publishing Server Search vendor "Adobe" for product "Framemaker Publishing Server" | < 2020 Search vendor "Adobe" for product "Framemaker Publishing Server" and version " < 2020" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Framemaker Publishing Server Search vendor "Adobe" for product "Framemaker Publishing Server" | 2020 Search vendor "Adobe" for product "Framemaker Publishing Server" and version "2020" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Framemaker Publishing Server Search vendor "Adobe" for product "Framemaker Publishing Server" | 2020 Search vendor "Adobe" for product "Framemaker Publishing Server" and version "2020" | update1 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Framemaker Publishing Server Search vendor "Adobe" for product "Framemaker Publishing Server" | 2020 Search vendor "Adobe" for product "Framemaker Publishing Server" and version "2020" | update2 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Framemaker Publishing Server Search vendor "Adobe" for product "Framemaker Publishing Server" | 2020 Search vendor "Adobe" for product "Framemaker Publishing Server" and version "2020" | update3 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Framemaker Publishing Server Search vendor "Adobe" for product "Framemaker Publishing Server" | 2022 Search vendor "Adobe" for product "Framemaker Publishing Server" and version "2022" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Framemaker Publishing Server Search vendor "Adobe" for product "Framemaker Publishing Server" | 2022 Search vendor "Adobe" for product "Framemaker Publishing Server" and version "2022" | update1 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Framemaker Publishing Server Search vendor "Adobe" for product "Framemaker Publishing Server" | 2022 Search vendor "Adobe" for product "Framemaker Publishing Server" and version "2022" | update2 |
Affected
|