CVE-2023-39343

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Aug 4, 2023
Updated: Aug 8, 2023
CWE ID 204

Summary

CVE-2023-39343 is a vulnerability affecting the Sulu content management system, which is based on the Symfony framework. The issue permits an attacker to determine which usernames or emails exist in the system through the Admin Login form. However, this vulnerability only impacts installations that have not adopted the updated Symfony security system. The latest patch for this issue is available in version 2.5.10.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share