Security Advisory

CVE-2024-47651

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-10-04 12:07:45
Last updated 2024-10-04 14:12:59
Assigner CERT-In
CVSS score 7.1
State PUBLISHED

Description

This vulnerability exists in Shilpi Client Dashboard due to improper handling of multiple parameters in the API endpoint. An authenticated remote attacker could exploit this vulnerability by including multiple “userid” parameters in the API request body leading to unauthorized access of sensitive information belonging to other users.