First published: Wed Feb 28 2024(Updated: )
Low-privileged users with access to the Sitefinity backend may obtain sensitive information from the site's administrative area.
Credit: security@progress.com
Affected Software | Affected Version | How to fix |
---|---|---|
Progress Sitefinity CMS | <13.3.7649 | |
Progress Sitefinity CMS | >=14.0<14.4.8135 | |
Progress Sitefinity CMS | >=15.0.8200<15.0.8227 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-1632 has been classified with a low severity level.
To fix CVE-2024-1632, it is recommended to update the Progress Sitefinity software to the latest version.
CVE-2024-1632 affects low-privileged users who have access to the Sitefinity backend.
CVE-2024-1632 allows low-privileged users to access sensitive information from the administrative area of Sitefinity.
CVE-2024-1632 impacts Progress Sitefinity versions up to 13.3.7649, as well as all versions between 14.0 and 14.4.8135 and between 15.0.8200 and 15.0.8227.