CVE-2023-28094
CVSS 3.1 Score 9.8 of 10 (high)
Details
Summary
CVE-2023-28094 is a vulnerability affecting Pega platform clients running versions 7.4 through 8.8.x who have upgraded from an older version. These clients may inadvertently be utilizing default credentials, posing a significant security risk as default credentials are often easily guessable or publicly known. Attackers could exploit this vulnerability to gain unauthorized access to affected systems, potentially leading to data breaches or system compromise. It is strongly recommended that impacted organizations immediately assess their environment and update their credentials to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Pega Platform
Affected Vendors
- Pegasystems