{ "id": "CVE-2024-35102", "sourceIdentifier": "cve@mitre.org", "published": "2024-05-15T19:15:08.063", "lastModified": "2024-05-16T13:03:05.353", "vulnStatus": "Awaiting Analysis", "cveTags": [], "descriptions": [ { "lang": "en", "value": "Insecure Permissions vulnerability in VITEC AvediaServer (Model avsrv-m8105) 8.6.2-1 allows a remote attacker to escalate privileges via a crafted script." }, { "lang": "es", "value": "Vulnerabilidad de permisos inseguros en VITEC AvediaServer (modelo avsrv-m8105) 8.6.2-1 permite a un atacante remoto escalar privilegios mediante un script manipulado." } ], "metrics": {}, "references": [ { "url": "https://vuln2you.blogspot.com/2024/05/avediaserver-unauthorised-api-access.html", "source": "cve@mitre.org" } ] }