CVE-2024-41600: High severity lin-cms-spring-boot vulnerability
Insecure Permissions vulnerability in lin-CMS Springboot v.0.2.1 and before allows a remote attacker to obtain sensitive information via the login method in the UserController.java component.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-41600?
CVE-2024-41600 is considered a high severity vulnerability due to the potential for remote attackers to access sensitive information.
How do I fix CVE-2024-41600?
To fix CVE-2024-41600, upgrade lin-CMS Springboot to version 0.2.2 or later where the insecure permissions vulnerability has been resolved.
What kind of information can be accessed due to CVE-2024-41600?
CVE-2024-41600 allows attackers to potentially obtain sensitive information through the login method in the UserController.java component.
Which versions of lin-CMS Springboot are affected by CVE-2024-41600?
CVE-2024-41600 affects lin-CMS Springboot version 0.2.1 and earlier.
Who is responsible for addressing CVE-2024-41600?
The maintainers of lin-CMS Springboot are responsible for addressing CVE-2024-41600 by providing timely updates and security patches.