CVE-2024-7015: Improper Authentication in Profelis Informatics and Consulting's PassBOX
Published Sep 9, 2024
·Updated
Missing Authentication for Critical Function vulnerability in Profelis Informatics and Consulting PassBox allows Authentication Abuse.
This issue affects PassBox: before v1.2.
Affected Software
1 affected component
Profelis PassBox<1.2
Event History
Sep 9, 2024
CVE Published
via MITRE·02:03 PM
Data Sourced
via MITRE·02:03 PM
DescriptionWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-7015?
CVE-2024-7015 has a high severity due to its potential for authentication abuse.
2
How do I fix CVE-2024-7015?
To fix CVE-2024-7015, upgrade Profelis PassBox to version 1.2 or later.
3
What type of vulnerability is CVE-2024-7015?
CVE-2024-7015 is an improper authentication and authorization vulnerability.
4
Which software versions are affected by CVE-2024-7015?
CVE-2024-7015 affects Profelis PassBox versions prior to 1.2.
5
What are the potential impacts of CVE-2024-7015?
CVE-2024-7015 can lead to unauthorized access and abuse of critical functions within PassBox.