PT-2024-24847 · Unknown · Pavex Embed Google Photos Album

·

CVE-2024-32775

·

Published

2024-04-24

·

Updated

2024-04-24

CVSS v3.1

4.9

Medium

VectorAV:N/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Pavex Embed Google Photos album versions n/a through 2.1.9
Description The issue is a Server-Side Request Forgery (SSRF) vulnerability. This means an attacker can potentially trick the server into making unauthorized requests, leading to various malicious outcomes. No information is provided about the estimated number of potentially affected devices worldwide or details about real-world incidents where this issue was exploited.
Recommendations For versions n/a through 2.1.9, update to a version later than 2.1.9 to resolve the issue. At the moment, there is no information about additional mitigation measures for this vulnerability.

Fix

SSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-32775

Affected Products

Pavex Embed Google Photos Album