CVE-2023-33443
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Jun 8, 2023
Updated: Jan 6, 2025
CWE ID 346
Summary
CVE-2023-33443 is a new vulnerability affecting BES--6024PB-I50H1 VideoPlayTool v2.0.1.0. This issue involves incorrect access control in the administrative functionalities, enabling attackers to execute arbitrary administrative commands. By sending a carefully crafted payload to targeted endpoints, unauthorized users can exploit this vulnerability and gain elevated privileges, potentially leading to serious security consequences. This weakness underscores the importance of timely patching and robust access control measures.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.