← Back

CVE-2024-1144

nvd nist
Published: Mar 19, 2024Modified: Oct 15, 2025

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Exploitability: 3.9 / Impact: 2.5
Source: cve-coordination@incibe.es (Secondary)

Description

Improper access control vulnerability in Devklan's Alma Blog that affects versions 2.1.10 and earlier. This vulnerability could allow an unauthenticated user to access the application's functionalities without the need for credentials.

Affected (1)

Products: Alma: Alma Blog
1 product
Alma Blog
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.1.10

References (2)

Timeline

No history available yet.