CVE-2024-8644
HIGHDescription
Cleartext Storage of Sensitive Information in a Cookie vulnerability in Oceanic Software ValeApp allows Protocol Manipulation, : JSON Hijacking (aka JavaScript Hijacking).This issue affects ValeApp: before v2.0.0.
Is your site exposed to CVE-2024-8644?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| oceanicsoft | valeapp |
References
Other References
Frequently Asked Questions
What is CVE-2024-8644? +
How severe is CVE-2024-8644? +
What products are affected by CVE-2024-8644? +
How do I check if I'm vulnerable to CVE-2024-8644? +
Related Vulnerabilities
FlatPress CMS v1.3.1 1.3 was discovered to use insecure methods to store authentication data via the cookie's component.
1Panel is an open source Linux server operation and maintenance management panel. The HTTPS cookie that comes with the panel …
A vulnerability classified as problematic has been found in Exrick xboot up to 3.3.4. Affected is an unknown function of …
A vulnerability was found in yangzongzhuan RuoYi-Vue up to 3.8.9 and classified as problematic. Affected by this issue is some …
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Oceanic Software ValeApp allows SQL Injection.This …
Session Fixation vulnerability in Oceanic Software ValeApp allows Brute Force, Session Hijacking.This issue affects ValeApp: before v2.0.0.