CVE-2023-39343
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Aug 4, 2023
Updated: Aug 8, 2023
CWE ID 204
Summary
CVE-2023-39343 is a vulnerability affecting the Sulu content management system, which is based on the Symfony framework. The issue permits an attacker to determine which usernames or emails exist in the system through the Admin Login form. However, this vulnerability only impacts installations that have not adopted the updated Symfony security system. The latest patch for this issue is available in version 2.5.10.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Sulu