CVE-2024-8003

A vulnerability was found in Go-Tribe gotribe-admin 1.0 and classified as problematic. Affected by this issue is the function InitRoutes of the file internal/app/routes/routes.go of the component Log Handler. The manipulation leads to deserialization. The patch is identified as 45ac90d6d1f82716f77dbcdf8e7309c229080e3c. It is recommended to apply a patch to fix this issue.
Configurations

Configuration 1 (hide)

cpe:2.3:a:gotribe:gotribe-admin:1.0:*:*:*:*:*:*:*

History

21 Aug 2024, 15:51

Type Values Removed Values Added
CPE cpe:2.3:a:gotribe:gotribe-admin:1.0:*:*:*:*:*:*:*
CVSS v2 : 2.7
v3 : 3.5
v2 : 2.7
v3 : 9.8
First Time Gotribe
Gotribe gotribe-admin
References () https://github.com/Go-Tribe/gotribe-admin/commit/45ac90d6d1f82716f77dbcdf8e7309c229080e3c - () https://github.com/Go-Tribe/gotribe-admin/commit/45ac90d6d1f82716f77dbcdf8e7309c229080e3c - Patch
References () https://github.com/Go-Tribe/gotribe-admin/issues/1 - () https://github.com/Go-Tribe/gotribe-admin/issues/1 - Exploit, Issue Tracking
References () https://github.com/Go-Tribe/gotribe-admin/issues/1#issuecomment-2298187923 - () https://github.com/Go-Tribe/gotribe-admin/issues/1#issuecomment-2298187923 - Exploit, Issue Tracking
References () https://vuldb.com/?ctiid.275198 - () https://vuldb.com/?ctiid.275198 - Permissions Required, Third Party Advisory, VDB Entry
References () https://vuldb.com/?id.275198 - () https://vuldb.com/?id.275198 - Third Party Advisory, VDB Entry
References () https://vuldb.com/?submit.393987 - () https://vuldb.com/?submit.393987 - Third Party Advisory, VDB Entry
Summary
  • (es) Una vulnerabilidad fue encontrada en Go-Tribe gotribe-admin 1.0 y clasificada como problemática. La función InitRoutes del archivo internal/app/routes/routes.go del componente Log Handler es afectada por esta vulnerabilidad. La manipulación conduce a la deserialización. El parche se identifica como 45ac90d6d1f82716f77dbcdf8e7309c229080e3c. Se recomienda aplicar un parche para solucionar este problema.

20 Aug 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-20 14:15

Updated : 2024-08-21 15:51


NVD link : CVE-2024-8003

Mitre link : CVE-2024-8003

CVE.ORG link : CVE-2024-8003


JSON object : View

Products Affected

gotribe

  • gotribe-admin
CWE
CWE-502

Deserialization of Untrusted Data