CVE-2024-38646: Notes Station 3
An incorrect permission assignment for critical resource vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow local authenticated attackers who have gained administrator access to read or modify the resource.
We have already fixed the vulnerability in the following version: Notes Station 3 3.9.7 and later
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-38646?
CVE-2024-38646 is classified as a critical vulnerability due to its potential impact on resource confidentiality and integrity.
How do I fix CVE-2024-38646?
To fix CVE-2024-38646, ensure your Notes Station 3 software is updated to version 3.9.7 or later.
Who is affected by CVE-2024-38646?
CVE-2024-38646 affects local authenticated users with administrator access on Notes Station 3.
What type of vulnerability is CVE-2024-38646?
CVE-2024-38646 is an incorrect permission assignment vulnerability that allows unauthorized access to critical resources.
Can CVE-2024-38646 be exploited remotely?
No, CVE-2024-38646 requires local authenticated access for exploitation.