CVE-2024-34885
EUVD-2024-3510104.11.2024, 19:15
Insufficiently protected credentials in SMTP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to read SMTP accounts passwords via HTTP GET request.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| bitrix24 | bitrix24 | 23.300.100 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration