CVE-2024-46897: Low severity opentext exceed vulnerability
Incorrect permission assignment for critical resource issue exists in Exment v6.1.4 and earlier and Exment v5.0.11 and earlier. A logged-in user with the permission of table management may obtain and/or alter the information of the unauthorized table.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-46897?
The severity of CVE-2024-46897 is considered medium due to the incorrect permission assignment affecting critical resources.
How do I fix CVE-2024-46897?
To fix CVE-2024-46897, upgrade Exment to version 6.1.5 or later for v6 and to version 5.0.12 or later for v5.
Who is affected by CVE-2024-46897?
CVE-2024-46897 affects users of Exment v6.1.4 and earlier and Exment v5.0.11 and earlier.
What can happen if I don't address CVE-2024-46897?
If not addressed, CVE-2024-46897 allows a logged-in user with table management permission to access and modify unauthorized data.
Is there a temporary workaround for CVE-2024-46897?
Currently, there is no suggested temporary workaround for CVE-2024-46897; updating the software is the recommended approach.