CVE-2023-29121
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Nov 5, 2024
Updated: Nov 8, 2024
CWE ID 284
Summary
CVE-2023-29121 is a newly identified cybersecurity vulnerability affecting the Waybox Enel TCF Agent service. Maliciously crafted requests to this service can grant attackers administrator privileges, compromising the entire Waybox system. Successful exploitation allows unauthorized access to system configurations and sensitive data, posing a significant threat to the security and integrity of the affected infrastructure. The vulnerability underscores the importance of timely software updates and robust access control policies to mitigate potential risks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Enel X