AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2024-6880

UNKNOWN · CVSS N/A EPSS 0.49%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-01-10 · Last synced 2026-08-04

CyberRota Analysis

This vulnerability has an unknown severity rating. See the original NVD description below for full technical details.

CVE
CVE-2024-6880
Severity
UNKNOWN
CVSS
N/A
EPSS
0.49%

Original NVD Description

During MegaBIP installation process, a user is encouraged to change a default path to administrative portal, as keeping it secret is listed by the author as one of the protection mechanisms.  Publicly available source code of "/registered.php" discloses that path, allowing an attacker to attempt further attacks.   This issue affects MegaBIP software versions below 5.15