CVE-2024-52312
data.all authenticated users can perform restricted operations against DataSets and Environments
Due to inconsistent authorization permissions, data.all may allow an external actor with an authenticated account to perform restricted operations against DataSets and Environments.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N
Productos afectados
amazon · data.all¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →