PoC Index

CVE-2024-50967

MEDIUM 6.5EPSS 1.7%

The /rest/rights/ REST API endpoint in Becon DATAGerry through 2.2.0 contains an Incorrect Access Control vulnerability. An attacker can remotely access this endpoint without authentication, leading to unauthorized disclosure of sensitive information.

CVSS v3.1
6.5 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS
1.68% chance of exploitation in the next 30 days, 75th percentile
Nuclei
high · CWE-200
Published
2025-01-17
Updated
2025-02-04

Proof-of-concept exploits (1)

Nuclei templates (1)

References

Related