CVE-2024-48310

AutoLib Software Systems OPAC v20.10 was discovered to have multiple API keys exposed within the source code. Attackers may use these keys to access the backend API or other sensitive information.
Configurations

No configuration.

History

25 Mar 2025, 14:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-200

18 Feb 2025, 19:15

Type Values Removed Values Added
CWE CWE-798
CVSS v2 : unknown
v3 : 7.5
v2 : unknown
v3 : unknown
Summary
  • (es) Se descubrió que el AutoLib Software Systems OPAC v20.10 tiene varias claves API expuestas dentro del código fuente. Los atacantes pueden usar estas claves para acceder a la API de backend o a otra información confidencial.

29 Jan 2025, 15:15

Type Values Removed Values Added
CWE CWE-798
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

28 Jan 2025, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-28 23:15

Updated : 2025-03-25 14:15


NVD link : CVE-2024-48310

Mitre link : CVE-2024-48310

CVE.ORG link : CVE-2024-48310


JSON object : View

Products Affected

No product.

CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor