cve/2024/CVE-2024-9970.md
2025-09-29 21:09:30 +02:00

772 B

CVE-2024-9970

Description

The FlowMaster BPM Plus system from NewType has a privilege escalation vulnerability. Remote attackers with regular privileges can elevate their privileges to administrator by tampering with a specific cookie.

POC

Reference

No PoCs from references.

Github