PT-2024-38554 · Unknown · Traccar Server

·

CVE-2024-7746

·

Published

2024-08-13

·

Updated

2025-10-12

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Traccar Server (affected versions not specified)
Description The issue affects the privileged transactions implemented by the Traccar solution, which should otherwise be protected by the authentication mechanism. These transactions could have an impact on any sensitive aspect of the platform, including Confidentiality, Integrity, and Availability. The vulnerability allows Authentication Abuse through the use of default credentials in the Administrator Panel modules.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-7746

Affected Products

Traccar Server