The SYSCOM Group OMFLOW - Broken Access Control
Vulnerability Description
OMFLOW from The SYSCOM Group does not properly restrict access to the system settings modification functionality, allowing remote attackers with regular privileges to update system settings or create accounts with administrator privileges, thereby gaining control of the server.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-8779
Credits & Attribution
No credits recorded in the NVD database.
References
More from The SYSCOM Group
View All →Affected Vendor
The SYSCOM Group
View all reports →