Medium severity6.5NVD Advisory· Published Oct 4, 2024· Updated Jun 17, 2026
CVE-2024-47657
CVE-2024-47657
Description
This vulnerability exists in the Shilpi Net Back Office due to improper access controls on certain API endpoints. An authenticated remote attacker could exploit this vulnerability by manipulating a parameter dfclientid through API request URLs which could lead to unauthorized access to sensitive information belonging to other users.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Shilpi Computers/Net Back Officev5Range: <5.5.002
Patches
Vulnerability mechanics
References
1- www.cert-in.org.in/s2cMainServletnvdThird Party Advisory
News mentions
0No linked articles in our index yet.