216.73.216.226

CVE-2024-48143

· Published 24/10/2024 19:15 · Modified 25/10/2024 18:35

Labels: CVE-2024-48143 2024-10-24CVE-2024-48143CWE-307[email protected]

Essential information

Published
24/10/2024 19:15
Modified
25/10/2024 18:35
Author
Creator
CVSS
9.1 CRITICAL (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

CVSS metrics

Description

A lack of rate limiting in the OTP validation component of Digitory Multi Channel Integrated POS v1.0 allows attackers to gain access to the ordering system and place an excessive amount of food orders.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

References