Back

HIGH

Improper Authorization Vulnerability

Published Sep 11, 2024

Description

This vulnerability exists in Reedos aiM-Star version 2.0.1 due to improper access controls on its certain API endpoints. An authenticated remote attacker could exploit this vulnerability by manipulating a parameter through API request URL which could lead to gain unauthorized access to sensitive information belonging to other users.

Affected products

Remediation

Vendor solution

Upgrade Reedos Mutual Fund Distribution Product (aiM-Star) to version 2.0.2

Metrics

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner CERT-In
Published Sep 11, 2024
Updated Sep 11, 2024
Reserved Sep 9, 2024
CISA Vulnrichment
Updated Sep 11, 2024
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a