CVE-2024-41518: Mecodia Feripro
High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.
An Incorrect Access Control vulnerability in "/admin/programm/<program_id>/export/statistics" in Feripro <= v2.2.3 allows remote attackers to export an XLSX file with information about registrations and participants.
Affected products
- Mecodia Feripro: up to and including 2.2.3
Published 2024-08-02. Last modified 2026-06-17.