← Vulnerability feed

Vulnerability record · CVE-2024-46097 · published 27 September 2024

CVE-2024-46097: Testlink improper access control vulnerability

Testlink · Testlink

TestLink 1.9.20 is vulnerable to Incorrect Access Control in the TestPlan editing section. When a new TestPlan is created, an ID with an incremental value is automatically generated. Using the edit function you can change the tplan_id parameter to another ID. The application does not carry out a check on the user's permissions maing it possible to recover the IDs of all the TestPlans (even the administrative ones) and modify them even with minimal privileges.

8.1 CVSS 3.1 High EPSS 0.43% · top 65.0% CWE-284 · Improper access control
8.1CVSS 3.1 base score
0.43%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
1References, 1 tagged exploit
17 Jun 2026Last modified by NVD

Description

TestLink 1.9.20 is vulnerable to Incorrect Access Control in the TestPlan editing section. When a new TestPlan is created, an ID with an incremental value is automatically generated. Using the edit function you can change the tplan_id parameter to another ID. The application does not carry out a check on the user's permissions maing it possible to recover the IDs of all the TestPlans (even the administrative ones) and modify them even with minimal privileges.

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2024-46097 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2007-6006Testlink improper authentication vulnerabilityTestLink before 1.7.1 does not enforce an unspecified authorization mechanism, which has unknown impact and attack vectors.EPSS 1.4%9.8CVE-2020-12274Testlink vulnerabilityIn TestLink 1.9.20, the lib/cfields/cfieldsExport.php goback_url parameter causes a security risk because it depends on client input and is not const…EPSS 1.2%9.8CVE-2020-8637Testlink sql injection vulnerabilityA SQL injection vulnerability in TestLink 1.9.20 allows attackers to execute arbitrary SQL commands in dragdroptreenodes.php via the node_id paramete…EPSS 2.9%9.8CVE-2020-8638Testlink sql injection vulnerabilityA SQL injection vulnerability in TestLink 1.9.20 allows attackers to execute arbitrary SQL commands in planUrgency.php via the urgency parameter.EPSS 1.7%9.8CVE-2015-7390Testlink sql injection vulnerabilitySQL injection vulnerability in TestLink before 1.9.14 allows remote attackers to execute arbitrary SQL commands via the apikey parameter to lnl.php.EPSS 1.6%9.0CVE-2014-5308Testlink sql injection vulnerabilityMultiple SQL injection vulnerabilities in TestLink 1.9.11 allow remote authenticated users to execute arbitrary SQL commands via the (1) name paramet…EPSS 3.5%8.8CVE-2022-35196Testlink cross-site request forgery vulnerabilityTestLink v1.9.20 was discovered to contain a Cross-Site Request Forgery (CSRF) via /lib/plan/planView.php.EPSS 0.50%8.8CVE-2020-8639Testlink unrestricted file upload vulnerabilityAn unrestricted file upload vulnerability in keywordsImport.php in TestLink 1.9.20 allows remote attackers to execute arbitrary code by uploading a f…EPSS 16%

Source: NIST National Vulnerability Database (record CVE-2024-46097), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.