Medium severity5.3NVD Advisory· Published Jul 15, 2024· Updated Jun 17, 2026
CVE-2024-6738
CVE-2024-6738
Description
The tumbnail API of Tronclass from WisdomGarden lacks proper access control, allowing unauthenticated remote attackers to obtain certain specific files by modifying the URL.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:wisdomgarden:tronclass:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:wisdomgarden:tronclass:*:*:*:*:*:*:*:*range: <1.69.61976
- (no CPE)
- (no CPE)range: all
Patches
Vulnerability mechanics
References
2- www.twcert.org.tw/en/cp-139-7926-f7914-2.htmlnvdThird Party Advisory
- www.twcert.org.tw/tw/cp-132-7925-97e1c-1.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.