PT-2026-56246 · Dataease · Dataease
CVSS v4.0
8.7
High
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
DataEase versions prior to 2.10.24
Description
Authenticated users can perform unauthorized actions on export tasks belonging to other users by manipulating the task ID parameter. Affected actions include downloading files via the '/exportCenter/download/{id}' endpoint, deleting tasks via '/exportCenter/delete', retrying tasks via '/exportCenter/retry/{id}', and generating download links via '/exportCenter/generateDownloadUri/{id}'. Additionally, the '/exportCenter/download/{id}' endpoint is whitelisted from authentication, which allows unauthenticated access to exported files.
Recommendations
Update to version 2.10.24.
Exploit
Fix
IDOR
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dataease