CVE-2024-49202 Information

Description

Keyfactor Command before 12.5.0 has Incorrect Access Control: access tokens are over permissioned aka 64099. The fixed versions are 11.5.1.1 11.5.2.1 11.5.3.1 11.5.4.5 11.5.6.1 11.6.0 12.2.0.1 12.3.0.1 12.4.0.1 12.5.0 and 24.4.0.

Reference

https://keyfactor.com https://software.keyfactor.com/Core-OnPrem/v12.5/Content/ReleaseNotes/ReleaseNoteDetails-12_5.htm

Share on: