← Back

CVE-2024-1144

nvd nist
Published: Mar 19, 2024Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Exploitability: 3.9 / Impact: 2.5
Source: cve-coordination@incibe.es (Secondary)

Description

Improper access control vulnerability in Devklan's Alma Blog that affects versions 2.1.10 and earlier. This vulnerability could allow an unauthenticated user to access the application's functionalities without the need for credentials.

Affected (1)

Products: Alma: Alma Blog
1 product
Alma Blog
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.1.10

References (2)

Timeline

No history available yet.