First published: Fri Nov 01 2024(Updated: )
Missing Authorization vulnerability in ProfileGrid User Profiles ProfileGrid allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ProfileGrid: from n/a through 5.8.7.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Metagauss ProfileGrid | <5.8.8 | |
Metagauss ProfileGrid | <=5.8.7 | |
ProfileGrid – User Profiles, Groups and Communities | <=5.8.7 |
Update to 5.8.8 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-37453 is classified as a missing authorization vulnerability that can lead to unauthorized access.
To fix CVE-2024-37453, upgrade ProfileGrid User Profiles to version 5.8.8 or later.
CVE-2024-37453 affects ProfileGrid versions from n/a up to 5.8.7.
CVE-2024-37453 involves incorrectly configured access control security levels allowing unauthorized access.
The vendor for the affected software in CVE-2024-37453 is Metagauss.