CVE-2023-45317
CVSS V2 None
CVSS V3 None
Description
The application interface allows users to perform certain actions via
HTTP requests without performing any validity checks to verify the
requests. This can be exploited to perform certain actions with
administrative privileges if a logged-in user visits a malicious web
site.
Overview
- CVE ID
- CVE-2023-45317
- Assigner
- icscert
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-10-26T16:17:37.365Z
- Last Modified Date
- 2023-10-26T16:17:37.365Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://www.cisa.gov/news-events/ics-advisories/icsa-23-299-08 | |
https://www.sielco.org/en/contacts |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-45317 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-45317 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-25 10:26:09 | Added to TrackCVE |