CVE-2024-28627
HIGHDescription
An issue in Flipsnack v.18/03/2024 allows a local attacker to obtain sensitive information via the reader.gz.js file.
CVSS v3.1 Score
Weakness Type (CWE)
References
Frequently Asked Questions
What is CVE-2024-28627? +
How severe is CVE-2024-28627? +
How do I check if I'm vulnerable to CVE-2024-28627? +
Related Vulnerabilities
mpGabinet performs client-side authentication. An attacker with access to any application instance connected to the backend server can bypass the …
Sparx Enterprise Architect software has a security feature that limits user's actions to those specified in the role. An authenticated …
New Site Server developed by CyberTutor has a Use of Client-Side Authentication vulnerability, allowing unauthenticated remote attackers to modify the …
TELSAT marKoni FM Transmitters are vulnerable to an attacker bypassing authentication and gaining administrator privileges.
The Restaurant Brands International (RBI) assistant platform through 2025-09-06 relies on client-side authentication for use of the diagnostic screen.
NMIS/BioDose V22.02 and previous versions rely on a common SQL Server user account to access data in the database. User …