CVE Database
/

CVE-2024-55585

Back to search

CVE-2024-55585

Published: Jun 7, 2025

Modified: Jun 13, 2025

PUBLISHED

Description

In the moPS App through 1.8.618, all users can access administrative API endpoints without additional authentication, resulting in unrestricted read and write access, as demonstrated by /api/v1/users/resetpassword.

VendorProductVersions

MOPS

moPS

affected
0 - <= 1.8.618

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now