Vulnerability CVE-2024-4537


Published: 2024-05-07

Description:
IDOR vulnerability in Janto Ticketing Software affecting version 4.3r10. This vulnerability could allow a remote user to obtain the download URL of another user to obtain the purchased ticket.

Type:

CWE-639

(Authorization Bypass Through User-Controlled Key)

 References:
https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-janto-ticketing-software

Copyright 2026, cxsecurity.com

 

Back to Top