CVE-2024-57603: Medium severity mayswind ezbookkeeping vulnerability
Published Feb 12, 2025
·Updated
An issue in MaysWind ezBookkeeping 0.7.0 allows a remote attacker to escalate privileges via the lack of rate limiting.
Affected Software
3 affected components
MaysWind ezBookkeeping
go/github.com/mayswind/ezbookkeeping<=0.7.0
MaysWind ezBookkeeping=0.7.0
Event History
Feb 12, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Feb 13, 2025
Advisory Published
via GitHub·12:33 AM
Frequently Asked Questions
1
What is the severity of CVE-2024-57603?
CVE-2024-57603 has a significant severity due to its potential for privilege escalation.
2
How can I fix CVE-2024-57603?
To fix CVE-2024-57603, implement rate limiting to prevent unauthorized access and privilege escalation.
3
Which versions of MaysWind ezBookkeeping are affected by CVE-2024-57603?
CVE-2024-57603 affects MaysWind ezBookkeeping version 0.7.0.
4
Who is impacted by CVE-2024-57603?
Any user running MaysWind ezBookkeeping version 0.7.0 is at risk of CVE-2024-57603.
5
What type of vulnerability is CVE-2024-57603?
CVE-2024-57603 is a privilege escalation vulnerability caused by lack of rate limiting.