Executive Summary

Informations
Name CVE-2024-11146 First vendor Publication 2025-01-17
Vendor Cve Last vendor Modification 2025-02-20

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

TrueFiling is a collaborative, web-based electronic filing system where attorneys, paralegals, court reporters and self-represented filers collect public legal documentation into cases. TrueFiling is an entirely cloud-hosted application. Prior to version 3.1.112.19, TrueFiling trusted some client-controlled identifiers passed in URL requests to retrieve information. Platform users must self-register for an account, and once authenticated, could manipulate those identifiers to gain partial access to case information and the ability to partially change user access to case information. This vulnerability was addressed in version 3.1.112.19 and all instances were updated by 2024-11-08.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-11146

Sources (Detail)

https://infosec.exchange/@abreacher
https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/IT/white/20...
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
2
Date Informations
2025-02-21 00:20:41
  • Multiple Updates
2025-02-20 00:20:34
  • Multiple Updates
2025-01-17 13:20:32
  • First insertion