CVE-2024-46310
43Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendcvss 9.1epss 2.5%
exploitation probability
2.5%top 17% of all CVEs
observed exploitation
nono source reports it
Incorrect Access Control in Cfx.re FXServer v9601 and earlier allows unauthenticated users to modify and read arbitrary user data via exposed API endpoint
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Affected products
n/a · n/aReferences
https://github.com/PRX5Y/CVE-2024-46310