SecPod Community Forums Critical Vulnerability and Exploit Exchange CVE-2024-47089: Unauthorized Transaction Manipulation Vulnerability

Viewing 0 reply threads
  • Author
    Posts
    • #6010
      Shreya
      Participant

        This vulnerability exists in the Apex Softcell LD Geo due to improper validation of the transaction token ID in the API endpoint. An authenticated remote attacker could exploit this vulnerability by manipulating the transaction token ID in the API request leading to unauthorized access and modification of transactions belonging to other users.

        CVSS Score: 8.7

    Viewing 0 reply threads
    • You must be logged in to reply to this topic.