CVE-2024-11680 | ProjectSend up to r1719 HTTP Request options.php improper authentication (EUVD-2024-34152 / Nessus ID 271956)
A vulnerability was found in ProjectSend up to r1719. It has been rated as critical. Affected by this issue is some unknown functionality of the file options.php of the component HTTP Request Handler. This manipulation causes improper authentication.
This vulnerability is handled as CVE-2024-11680. The attack can be initiated remotely. Additionally, an exploit exists.
Upgrading the affected component is advised.