Record summary

CVE-2024-48217 has a selected CVSS score of 8.8 (high); EIP currently links 1 repository PoC.

Description

An Insecure Direct Object Reference (IDOR) in the dashboard of SiSMART v7.4.0 allows attackers to execute a horizontal-privilege escalation.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Nov 2, 2024 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Repository PoCs
1

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Nov 5, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied

Default status: unknown

CVE List7.4.0affected

Proofs of concept

1

Repository PoCs

GitHubajrielrm/CVE-2024-48217Repository PoCby ajrielrmStars: 1Not analyzed1 file

7.5 KiB

GitHub

PoC details

References

2