There is an insufficient input validation vulnerability in the Warehouse component of Absolute Secure Access prior to 13.06. Attackers with system administrator permissions can impair the availability of certain elements of the Secure Access administrative UI by writing invalid data to the warehouse over the network. There is no loss of warehouse integrity or confidentiality, the security scope is unchanged. Loss of availability is high.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: Absolute

Published: 2024-06-20T16:51:37.265Z

Updated: 2024-06-25T15:24:58.961Z

Reserved: 2024-06-05T21:07:26.876Z


Link: CVE-2024-37346

JSON object: View

cve-icon NVD Information

Status : Awaiting Analysis

Published: 2024-06-20T17:15:51.623

Modified: 2024-06-21T11:22:01.687


Link: CVE-2024-37346

JSON object: View

cve-icon Redhat Information

No data.

CWE