CVE-2024-52312
data.all authenticated users can perform restricted operations against DataSets and Environments
Due to inconsistent authorization permissions, data.all may allow an external actor with an authenticated account to perform restricted operations against DataSets and Environments.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N
Affected products
amazon · data.allWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →