{ "id": "CVE-2024-33329", "sourceIdentifier": "cve@mitre.org", "published": "2024-06-26T19:15:13.453", "lastModified": "2024-07-11T04:15:05.070", "vulnStatus": "Awaiting Analysis", "cveTags": [], "descriptions": [ { "lang": "en", "value": "A hardcoded privileged ID within Lumisxp v15.0.x to v16.1.x allows attackers to bypass authentication and access internal pages and other sensitive information." }, { "lang": "es", "value": " Una identificaci\u00f3n privilegiada codificada dentro de Lumisxp v15.0.x a v16.1.x permite a los atacantes omitir la autenticaci\u00f3n y acceder a p\u00e1ginas internas y otra informaci\u00f3n confidencial." } ], "metrics": {}, "weaknesses": [ { "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "type": "Secondary", "description": [ { "lang": "en", "value": "CWE-798" } ] } ], "references": [ { "url": "http://seclists.org/fulldisclosure/2024/Jul/7", "source": "cve@mitre.org" }, { "url": "https://gist.github.com/rodnt/f6b3a2ac875b8f13656063eefbfd9812", "source": "cve@mitre.org" } ] }