CVE-2024-4428

Missing Authentication for Critical Function, Missing Authorization vulnerability in Menulux Information Technologies Managment Portal allows Collect Data as Provided by Users. This issue affects Managment Portal: through 21.05.2024.
Configurations

Configuration 1 (hide)

cpe:2.3:a:menulux:managment_portal:*:*:*:*:*:*:*:*

History

03 Jun 2026, 16:16

Type Values Removed Values Added
Summary (en) Missing Authentication for Critical Function, Missing Authorization vulnerability in Menulux Information Technologies Managment Portal allows Collect Data as Provided by Users.This issue affects Managment Portal: through 21.05.2024. (en) Missing Authentication for Critical Function, Missing Authorization vulnerability in Menulux Information Technologies Managment Portal allows Collect Data as Provided by Users. This issue affects Managment Portal: through 21.05.2024.
References
  • () https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-24-1356 -

14 Oct 2025, 13:15

Type Values Removed Values Added
CWE CWE-269 CWE-862
CWE-306
Summary (en) Improper Privilege Management vulnerability in Menulux Information Technologies Managment Portal allows Collect Data as Provided by Users.This issue affects Managment Portal: through 21.05.2024. (en) Missing Authentication for Critical Function, Missing Authorization vulnerability in Menulux Information Technologies Managment Portal allows Collect Data as Provided by Users.This issue affects Managment Portal: through 21.05.2024.

30 Aug 2024, 15:49

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
References () https://www.usom.gov.tr/bildirim/tr-24-1356 - () https://www.usom.gov.tr/bildirim/tr-24-1356 - Broken Link
CPE cpe:2.3:a:menulux:managment_portal:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
First Time Menulux
Menulux managment Portal
Summary
  • (es) La vulnerabilidad de administración de privilegios incorrecta en el portal de administración de Menulux Information Technologies permite recopilar datos proporcionados por los usuarios. Este problema afecta al portal de administración: hasta el 21.05.2024.

29 Aug 2024, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-29 11:15

Updated : 2026-06-03 16:16


NVD link : CVE-2024-4428

Mitre link : CVE-2024-4428

CVE.ORG link : CVE-2024-4428


JSON object : View

Products Affected

menulux

  • managment_portal
CWE
CWE-306

Missing Authentication for Critical Function

CWE-862

Missing Authorization

NVD-CWE-noinfo