Predictable Page Indexing Might Lead to Sensitive Data Exposure in Mautic
Vulnerability Description
Mautic uses predictable page indices for unpublished landing pages, their content can be accessed by unauthenticated users under public preview URLs which could expose sensitive data. At the time of publication of the CVE no patch is available
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-2730
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- ZHAW Information Security Research Group
More from Mautic
View All →Affected Vendor
Mautic
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.