#VU76160 Improper access control in Open Web Analytics - CVE-2022-24637
Published: May 15, 2023 / Updated: October 25, 2024
Open Web Analytics
Open Web Analytics
Description
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper access restrictions. A remote attacker can bypass implemented security restrictions and obtain sensitive user information, which can be used to gain admin privileges by leveraging cache hashes.