VYPR
High severity8.2NVD Advisory· Published Dec 6, 2024· Updated Apr 15, 2026

CVE-2024-10776

CVE-2024-10776

Description

Lua apps can be deployed, removed, started, reloaded or stopped without authorization via AppManager. This allows an attacker to remove legitimate apps creating a DoS attack, read and write files or load apps that use all features of the product available to a customer.

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.