Sploitus

CVE-2024-44313

2 known exploits for CVE-2024-44313

TastyIgniter 3.7.6 contains an Incorrect Access Control vulnerability in the invoice() function within Orders.php which allows unauthorized users to access and generate invoices due to missing permission checks.

Affected products
Tastyigniter
Tastyigniter
= 3.7.6
Fix
Available
CVSS 3.1
8.1 HIGH
EPSS
0.7% (52th percentile)
Weakness
CWE-284
NVD status
Analyzed
Published
2025-03-18
CVE-2024-44313 at NVD
Authoritative description, scoring and affected products

2 known exploits for CVE-2024-44313

Proof-of-concept code and exploit modules indexed by Sploitus