CVE Vulnerabilities

CVE-2024-22074

Published: Jun 06, 2024 | Modified: Mar 18, 2025
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Dynamsoft Service 1.8.1025 through 1.8.2013, 1.7.0330 through 1.7.2531, 1.6.0428 through 1.6.1112, 1.5.0625 through 1.5.3116, 1.4.0618 through 1.4.1230, and 1.0.516 through 1.3.0115 has Incorrect Access Control. This is fixed in 1.8.2014, 1.7.4212, 1.6.3212, 1.5.31212, 1.4.3212, and 1.3.3212.

Affected Software

NameVendorStart VersionEnd Version
Dynamsoft_serviceDynamsoft1.0.516 (including)1.3.3212 (excluding)
Dynamsoft_serviceDynamsoft1.4.1230 (including)1.4.3212 (excluding)
Dynamsoft_serviceDynamsoft1.5.0625 (including)1.5.31212 (excluding)
Dynamsoft_serviceDynamsoft1.6.0428 (including)1.6.3212 (excluding)
Dynamsoft_serviceDynamsoft1.7.0330 (including)1.7.4212 (excluding)
Dynamsoft_serviceDynamsoft1.8.1025 (including)1.8.2014 (excluding)

References