Medium severity6.3NVD Advisory· Published Sep 9, 2024· Updated Jun 17, 2026
CVE-2024-42759
CVE-2024-42759
Description
An issue in Ellevo v.6.2.0.38160 allows a remote attacker to escalate privileges via the /api/usuario/cadastrodesuplente endpoint.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
2- csflabs.github.io/cve/2024/09/06/cve-2024-42759-approval-of-your-own-ticket-with-BFLA.htmlnvdExploitThird Party Advisory
- ellevo.comnvdProduct
News mentions
0No linked articles in our index yet.