CVE-2024-25169

An issue in Mezzanine v6.0.0 allows attackers to bypass access control mechanisms in the admin panel via a crafted request.
Configurations

Configuration 1 (hide)

cpe:2.3:a:jupo:mezzanine:6.0.0:*:*:*:*:*:*:*

History

28 Mar 2025, 19:15

Type Values Removed Values Added
CWE CWE-284

14 Feb 2025, 15:28

Type Values Removed Values Added
References () https://github.com/shenhav12/CVE-2024-25169-Mezzanine-v6.0.0 - () https://github.com/shenhav12/CVE-2024-25169-Mezzanine-v6.0.0 - Third Party Advisory
References () https://ibb.co/JKh4hmD - () https://ibb.co/JKh4hmD - Exploit
References () https://ibb.co/Pt9qd8t - () https://ibb.co/Pt9qd8t - Exploit
References () https://ibb.co/hLLPTVp - () https://ibb.co/hLLPTVp - Exploit
References () https://ibb.co/rfrKj3r - () https://ibb.co/rfrKj3r - Exploit
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
First Time Jupo
Jupo mezzanine
CWE NVD-CWE-Other
CPE cpe:2.3:a:jupo:mezzanine:6.0.0:*:*:*:*:*:*:*

21 Nov 2024, 09:00

Type Values Removed Values Added
References () https://github.com/shenhav12/CVE-2024-25169-Mezzanine-v6.0.0 - () https://github.com/shenhav12/CVE-2024-25169-Mezzanine-v6.0.0 -
References () https://ibb.co/JKh4hmD - () https://ibb.co/JKh4hmD -
References () https://ibb.co/Pt9qd8t - () https://ibb.co/Pt9qd8t -
References () https://ibb.co/hLLPTVp - () https://ibb.co/hLLPTVp -
References () https://ibb.co/rfrKj3r - () https://ibb.co/rfrKj3r -

28 Feb 2024, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-28 20:15

Updated : 2025-03-28 19:15


NVD link : CVE-2024-25169

Mitre link : CVE-2024-25169

CVE.ORG link : CVE-2024-25169


JSON object : View

Products Affected

jupo

  • mezzanine
CWE
NVD-CWE-Other CWE-284

Improper Access Control