Home

Description

Priority – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

PUBLISHED Reserved 2024-10-06 | Published 2024-12-30 | Updated 2024-12-30 | Assigner INCD




HIGH: 7.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Problem types

CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

Product status

Default status
unaffected

All versions (custom) before Upgrade to version 24.1 or later and enable "PRIWALL", or block direct access to the portal from the internet and use a VPN or specific addresses
affected

Credits

Hai Vaknin finder

References

www.gov.il/en/Departments/faq/cve_advisories

cve.org (CVE-2024-47922)

nvd.nist.gov (CVE-2024-47922)