Vulnerabilities > CVE-2024-57032 - Incorrect Authorization vulnerability in Wegia
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
WeGIA < 3.2.0 is vulnerable to Incorrect Access Control in controle/control.php. The application does not validate the value of the old password, so it is possible to change the password by placing any value in the senha_antiga field.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 6 |