CVE-2023-39994

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Jan 2, 2025
CWE ID 862

Summary

CVE-2023-39994 is a critical vulnerability affecting the Repute InfoSystems ARMember Premium software. This issue involves missing authorization, enabling unauthorized access to restricted functionalities. The flaw arises due to incorrectly configured access control security levels. ARMember Premium versions from n/a to 5.9.2 are reportedly impacted by this vulnerability, potentially putting numerous installations at risk. Successful exploitation could lead to significant data breaches or system compromise. Users are urged to update their software as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share