CVE-2024-33622
MEDIUMID Link Manager/FUJITSU Software TIME CREATOR - Info Disclosure
Title source: llmDescription
Missing authentication for critical function vulnerability exists in ID Link Manager and FUJITSU Software TIME CREATOR. If this vulnerability is exploited, sensitive information may be obtained and/or the information stored in the database may be altered by a remote authenticated attacker.
References (2)
Core 2
Core References
Third Party Advisory
https://jvn.jp/en/jp/JVN65171386/
Scores
CVSS v3
6.5
EPSS
0.0044
EPSS Percentile
34.8%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-306
Status
published
Products (14)
Fsas Technologies Inc./FUJITSU Business Application ID Link Manager II
V1.8 and earlier
Fsas Technologies Inc./FUJITSU Software ID Link Manager
V2.0
Fsas Technologies Inc./FUJITSU Software TIME CREATOR ID Link Manager
V2.3.0
Fsas Technologies Inc./FUJITSU Software TIME CREATOR ID Link Manager
V2.3.1
Fsas Technologies Inc./FUJITSU Software TIME CREATOR ID Link Manager
V2.4
Fsas Technologies Inc./FUJITSU Software TIME CREATOR ID Link Manager
V2.5
Fsas Technologies Inc./FUJITSU Software TIME CREATOR ID Link Manager
V2.6
Fsas Technologies Inc./FUJITSU Software TIME CREATOR ID Link Manager
V3.0
Fsas Technologies Inc./FUJITSU Software TIME CREATOR ID Link Manager
V3.0.2
Fsas Technologies Inc./FUJITSU Software TIME CREATOR ID Link Manager
V3.0.2.1
... and 4 more
Published
Jun 18, 2024
Tracked Since
Feb 18, 2026