📦 14finger

by B1ackc4t

🔍 What is 14finger?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-37770

CRITICAL CVSS 9.1 Jul 10, 2024

CVE-2024-37770 is a critical remote command execution vulnerability in 14Finger v1.1 that allows attackers to execute arbitrary system commands via crafted payloads sent to the fingerprint function. T...

CVE-2024-37767

HIGH CVSS 7.5 Jul 5, 2024

This vulnerability allows attackers to access all user information in 14Finger v1.1 through insecure permissions in the /api/admin/user component. Attackers can exploit this by sending a crafted GET r...

CVE-2024-37769

HIGH CVSS 8.8 Jul 5, 2024

CVE-2024-37769 is an insecure permissions vulnerability in 14Finger v1.1 that allows attackers to escalate privileges from normal user to Administrator via a crafted POST request. This affects all use...