CVE-2024-6301
Lack of validation of origin in federation API in Conduit, allowing any remote server to impersonate any user from any s
Lack of validation of origin in federation API in Conduit, allowing any remote server to impersonate any user from any server in most EDUs.
MEDIUM · CVSS 5.3
EPSS 0.00199
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
Sigma rules0
YARA rules0