VYPR
Medium severity6.5NVD Advisory· Published Oct 7, 2024· Updated Jun 17, 2026

CVE-2024-45919

CVE-2024-45919

Description

A security flaw has been discovered in Solvait version 24.4.2 that allows an attacker to elevate their privileges. By manipulating the Request ID and Action Type parameters in /AssignToMe/SetAction, an attacker can bypass approval workflows leading to unauthorized access to sensitive information or approval of fraudulent requests.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Solvait/Solvait3 versions
    cpe:2.3:a:solvait:solvait:24.4.2:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:solvait:solvait:24.4.2:*:*:*:*:*:*:*
    • (no CPE)
    • (no CPE)range: = 24.4.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.