Apache OFBiz
cpe:2.3:a:apache:ofbiz:*:*:*:*:*:*:*, +1 more
- < 24.09.06
A moderate improper authorization vulnerability has been identified in Apache OFBiz Webtools, affecting versions prior to 24.09.06. This vulnerability allows low-privileged users to submit system jobs, which could potentially be misused to execute unauthorized tasks within the application.
Exploitation of this vulnerability could lead to unauthorized submission of system jobs by low-privileged users, allowing them to execute tasks that could disrupt normal operations or access sensitive information.
Users are advised to upgrade to Apache OFBiz version 24.09.06 or later, which addresses this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.