CVE-2023-24674: High severity bludit vulnerability
Published Sep 1, 2023
·Updated
Permissions vulnerability found in Bludit CMS v.4.0.0 allows local attackers to escalate privileges via the role:admin parameter.
Affected Software
1 affected component
Bludit bludit=4.0.0
Event History
Sep 1, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-24674?
The severity of CVE-2023-24674 is high.
2
How does the permissions vulnerability in Bludit CMS v.4.0.0 affect local attackers?
The permissions vulnerability allows local attackers to escalate privileges via the role:admin parameter.
3
What version of Bludit CMS is affected by CVE-2023-24674?
CVE-2023-24674 affects Bludit CMS v.4.0.0.
4
How can the permissions vulnerability in Bludit CMS v.4.0.0 be exploited?
The permissions vulnerability can be exploited by manipulating the role:admin parameter.
5
Are there any references or sources for more information about CVE-2023-24674?
Yes, you can find more information about CVE-2023-24674 at the following links: [Link 1](https://cupc4k3.medium.com/cve-2023-24674-uncovering-a-privilege-escalation-vulnerability-in-bludit-cms-dcf86c41107) and [Link 2](https://medium.com/@cupc4k3/privilege-scalation-in-bludit-cms-dcf86c41107)