Remotely Forced Group Join Vulnerability in GroupSharing Prior to Version 13.6.13.3
CVE-2024-34659
5.3MEDIUM
Summary
Exposure of sensitive information in GroupSharing prior to version 13.6.13.3 allows remote attackers can force the victim to join the group.
Affected Version(s)
Group Sharing 13.6.13.3
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved