CVE-2024-37346

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/06/2024
Last modified:
07/08/2024

Description

There is an insufficient input validation vulnerability in<br /> the Warehouse component of Absolute Secure Access prior to 13.06. Attackers<br /> with system administrator permissions can impair the availability of certain<br /> elements of the Secure Access administrative UI by writing invalid data to the<br /> warehouse over the network. There is no loss of warehouse integrity or<br /> confidentiality, the security scope is unchanged. Loss of availability is high.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:absolute:secure_access:*:*:*:*:*:*:*:* 13.06 (excluding)