CVE Database
/

CVE-2024-28215

Back to search

CVE-2024-28215

Published: Mar 7, 2024

Modified: Sep 6, 2024

PUBLISHED

Description

nGrinder before 3.5.9 allows an attacker to create or update webhook configuration due to lack of access control, which could be the cause of information disclosure and limited Server-Side Request Forgery.

VendorProductVersions

NAVER

nGrinder

unaffected
3.5.9

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now