Skip to main content

Incorrect User Management

CVE-2024-48853

Severity High
Score 9.5/10

Summary

An escalation of privilege vulnerability in ASPECT could provide an attacker root access to a server when logged in as a "non" root ASPECT user. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03.

  • HIGH
  • NETWORK
  • HIGH
  • CHANGED
  • NONE
  • NONE
  • HIGH
  • HIGH

CWE-286 - Incorrect User Management

The software does not properly manage a user within its environment.

References

Advisory Timeline

  • Published