CVE-2024-12663

Source
https://cve.org/CVERecord?id=CVE-2024-12663
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-12663.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-12663
Published
2024-12-16T19:00:15.867Z
Modified
2026-07-15T01:48:53.395182202Z
Severity
  • 6.3 (Medium) CVSS_V4 - CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N CVSS Calculator
Summary
funnyzpc Mee-Admin Login login observable response discrepancy
Details

A vulnerability classified as problematic was found in funnyzpc Mee-Admin up to 1.6. This vulnerability affects unknown code of the file /mee/login of the component Login. The manipulation of the argument username leads to observable response discrepancy. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used.

Database specific
{
    "unresolved_ranges": [
        {
            "extracted_events": [
                {
                    "introduced": "1.1"
                },
                {
                    "last_affected": "1.1"
                },
                {
                    "introduced": "1.2"
                },
                {
                    "last_affected": "1.2"
                },
                {
                    "introduced": "1.3"
                },
                {
                    "last_affected": "1.3"
                },
                {
                    "introduced": "1.4"
                },
                {
                    "last_affected": "1.4"
                }
            ],
            "source": "AFFECTED_FIELD"
        }
    ],
    "cna_assigner": "VulDB",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/12xxx/CVE-2024-12663.json",
    "cwe_ids": [
        "CWE-203",
        "CWE-204"
    ]
}
References

Affected packages

Git / github.com/funnyzpc/mee-admin

Affected ranges

Type
GIT
Repo
https://github.com/funnyzpc/mee-admin
Events
Database specific
{
    "extracted_events": [
        {
            "introduced": "1.0"
        },
        {
            "last_affected": "1.0"
        },
        {
            "introduced": "1.5"
        },
        {
            "last_affected": "1.5"
        },
        {
            "introduced": "1.6"
        },
        {
            "last_affected": "1.6"
        }
    ],
    "source": "AFFECTED_FIELD"
}

Affected versions

1.*
1.0
1.5
1.6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-12663.json"