216.73.217.22

CVE-2024-46988

· Published 14/10/2024 18:15 · Modified 16/10/2024 14:07

Labels: CVE-2024-46988 2024-10-14CVE-2024-46988CWE-280CWE-755[email protected]

Essential information

Published
14/10/2024 18:15
Modified
16/10/2024 14:07
Author
Creator
CVSS
5.7 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N

CVSS metrics

Description

Tuleap is a tool for end to end traceability of application and system developments. Prior to Tuleap Community Edition 15.13.99.40, Tuleap Enterprise Edition 15.13-3, and Tuleap Enterprise Edition 15.12-6, users might receive email notification with information they should not have access to. Tuleap Community Edition 15.13.99.40, Tuleap Enterprise Edition 15.13-3, and Tuleap Enterprise Edition 15.12-6 fix this issue.

NVD status

Status
Analyzed — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
enalean / tuleap cpe:2.3:a:enalean:tuleap:*:*:*:*:enterprise:*:*:*
enalean / tuleap cpe:2.3:a:enalean:tuleap:*:*:*:*:community:*:*:*
enalean / tuleap cpe:2.3:a:enalean:tuleap:*:*:*:*:enterprise:*:*:*

References