[CVE ID]
CVE-2024-27602
[PRODUCT]
Alldata-V0.4.6
[VERSION]
Alldata-V0.4.6
[PROBLEM TYPE]
Incorrect Access Control
[DESCRIPTION]
Alldata V0.4.6 is vulnerable to Incorrect Access Control. A total of many modules interface documents have been leaked.For example, the /api/system/v2/api-docs module.