High severity8.8NVD Advisory· Published Aug 5, 2024· Updated Apr 15, 2026
CVE-2024-40531
CVE-2024-40531
Description
A mass assignment vulnerability exists in Pantera CRM versions 401.152 and 402.072. This flaw allows authenticated users to modify any user attribute, including roles, by injecting additional parameters via profile management functions.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.