Guangzhou Hongfan Technology Co., LTD. iOffice20 has any user login vulnerability. An attacker can log in to any system account including the system administrator through a logical flaw.
History

Mon, 24 Mar 2025 18:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-287
Metrics cvssV3_1

{'score': 7.7, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 21 Mar 2025 13:45:00 +0000

Type Values Removed Values Added
Description Guangzhou Hongfan Technology Co., LTD. iOffice20 has any user login vulnerability. An attacker can log in to any system account including the system administrator through a logical flaw.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2025-03-21T00:00:00.000Z

Updated: 2025-03-24T17:43:43.079Z

Reserved: 2025-01-09T00:00:00.000Z

Link: CVE-2024-57490

cve-icon Vulnrichment

Updated: 2025-03-24T17:43:37.901Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-03-21T14:15:15.120

Modified: 2025-03-24T18:15:21.473

Link: CVE-2024-57490

cve-icon Redhat

No data.