CVE-2024-5525

Improper privilege management vulnerability in Astrotalks affecting version 10/03/2023. This vulnerability allows a local user to access the application as an administrator without any provided credentials, allowing the attacker to perform administrative actions.
Configurations

Configuration 1 (hide)

cpe:2.3:a:codester:astrotalks:2023-10-03:*:*:*:*:*:*:*

History

23 Oct 2025, 12:24

Type Values Removed Values Added
First Time Codester astrotalks
Codester
CPE cpe:2.3:a:codester:astrotalks:2023-10-03:*:*:*:*:*:*:*
References () https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-astrotalks - () https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-astrotalks - Third Party Advisory

21 Nov 2024, 09:47

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de gestión de privilegios inadecuada en Astrotalks que afecta a la versión 03/10/2023. Esta vulnerabilidad permite que un usuario local acceda a la aplicación como administrador sin ninguna credencial proporcionada, lo que permite al atacante realizar acciones administrativas.
References () https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-astrotalks - () https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-astrotalks -

31 May 2024, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-31 08:15

Updated : 2025-10-23 12:24


NVD link : CVE-2024-5525

Mitre link : CVE-2024-5525

CVE.ORG link : CVE-2024-5525


JSON object : View

Products Affected

codester

  • astrotalks
CWE
CWE-269

Improper Privilege Management