Vulnerabilities > CVE-2024-9970 - Unspecified vulnerability in Newtype Flowmaster BPM Plus
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
The FlowMaster BPM Plus system from NewType has a privilege escalation vulnerability. Remote attackers with regular privileges can elevate their privileges to administrator by tampering with a specific cookie.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |