Pexip Infinity Connect before 1.13.0 lacks sufficient authenticity checks during the loading of resources, and thus remote attackers can cause the application to run untrusted code.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://docs.pexip.com/admin/security_bulletins.htm |
|
History
Thu, 03 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-863 | |
| Metrics |
cvssV3_1
|
Wed, 02 Apr 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Pexip Infinity Connect before 1.13.0 lacks sufficient authenticity checks during the loading of resources, and thus remote attackers can cause the application to run untrusted code. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2025-04-02T00:00:00.000Z
Updated: 2025-04-03T13:20:55.565Z
Reserved: 2024-06-15T00:00:00.000Z
Link: CVE-2024-38392
Updated: 2025-04-03T13:20:46.977Z
Status : Awaiting Analysis
Published: 2025-04-02T21:15:31.170
Modified: 2025-04-07T14:18:49.830
Link: CVE-2024-38392
No data.