CVE-2024-34457 - Oracle NetSuite Access Token Information Disclosure Vulnerability

CVE ID : CVE-2024-34457 Published : July 22, 2024, 10:15 a.m. | 1 hour, 14 minutes ago Description : On versions before 2.1.4, after a regular user successfully logs in, they can manually make a request using the authorization token to view everyone's user flink information, including executeSQL and config. Mitigation: all users should upgrade to 2.1.4 Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Jul 22, 2024 - 13:30
 0  2
CVE-2024-34457 - Oracle NetSuite Access Token Information Disclosure Vulnerability
CVE ID : CVE-2024-34457
Published : July 22, 2024, 10:15 a.m. | 1 hour, 14 minutes ago
Description : On versions before 2.1.4, after a regular user successfully logs in, they can manually make a request using the authorization token to view everyone's user flink information, including executeSQL and config. Mitigation: all users should upgrade to 2.1.4
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...