CVE-2024-36588

An issue in Annonshop.app DecentralizeJustice/ anonymousLocker commit 2b2b4 allows attackers to send messages erroneously attributed to arbitrary users via a crafted HTTP request.
Configurations

No configuration.

History

21 Nov 2024, 20:15

Type Values Removed Values Added
CWE CWE-290
References () https://github.com/go-compile/security-advisories/blob/master/vulns/CVE-2024-36588.md - () https://github.com/go-compile/security-advisories/blob/master/vulns/CVE-2024-36588.md -
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5

17 Jun 2024, 12:43

Type Values Removed Values Added
Summary
  • (es) Un problema en Annonshop.app DecentralizeJustice/AnonymousLocker commit 2b2b4 permite a los atacantes enviar mensajes atribuidos erróneamente a usuarios arbitrarios a través de una solicitud HTTP manipulada.

13 Jun 2024, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-13 19:15

Updated : 2024-11-21 20:15


NVD link : CVE-2024-36588

Mitre link : CVE-2024-36588

CVE.ORG link : CVE-2024-36588


JSON object : View

Products Affected

No product.

CWE
CWE-290

Authentication Bypass by Spoofing