Vulnerability CVE-2024-8780


Published: 2024-09-16

Description:
OMFLOW from The SYSCOM Group does not properly restrict the query range of its data query functionality, allowing remote attackers with regular privileges to obtain accounts and password hashes of other users.

Type:

CWE-200

(Information Exposure)

 References:
https://www.twcert.org.tw/tw/cp-132-8077-7a7c0-1.html
https://www.twcert.org.tw/en/cp-139-8078-36fc9-2.html

Copyright 2026, cxsecurity.com

 

Back to Top