Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-22952 | alf.io is an open source ticket reservation system. Prior to version 2.0-Mr-2402, an attacker can access data from other organizers. The attacker can use a specially crafted request to receive the e-mail log sent by other events. Version 2.0-M4-2402 fixes this issue. |
Wed, 18 Dec 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Alf
Alf alf |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:alf:alf:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Alf
Alf alf |
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-01T23:44:09.810Z
Reserved: 2024-02-08T22:26:33.513Z
Link: CVE-2024-25634
Updated: 2024-08-01T23:44:09.810Z
Status : Analyzed
Published: 2024-02-19T20:15:45.707
Modified: 2026-06-17T07:16:20.020
Link: CVE-2024-25634
No data.
OpenCVE Enrichment
No data.
-
CWE-497
Exposure of Sensitive System Information to an Unauthorized Control Sphere
- NVD-CWE-Other
EUVD