CVE-2024-7265
07.08.2024, 11:15
Incorrect User Management vulnerability in Naukowa i Akademicka Sie Komputerowa - Pastwowy Instytut Badawczy EZD RP allows logged-in user to change the password of any user, including root user, which could lead to privilege escalation.This issue affects EZD RP: from 15 before 15.84, from 16 before 16.15, from 17 before 17.2.Enginsight
Vendor | Product | Version |
---|---|---|
nask | ezd_rp | 15 ≤ 𝑥 < 15.84 |
nask | ezd_rp | 16 ≤ 𝑥 < 16.15 |
nask | ezd_rp | 17 ≤ 𝑥 < 17.2 |
𝑥
= Vulnerable software versions