CVE-2023-42435

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Oct 19, 2023
Updated: Oct 25, 2023
CWE ID 352

Summary

CVE-2023-42435 is a cross-site request forgery (CSRF) vulnerability that affects a specific product. An attacker exploiting this issue can successfully perform actions on a victim's behalf, potentially resulting in unauthorized changes or access to sensitive data. This security flaw occurs due to insufficient input validation and could lead to significant consequences if not addressed promptly. Users are advised to update their software as soon as a patch becomes available.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share