CVE-2023-48193
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Nov 28, 2023
Updated: Aug 2, 2024
Summary
CVE-2023-48193 is a vulnerability affecting JumpServer GPLv3 version 3.8.0. The issue involves insecure permissions, which enable a remote attacker to execute arbitrary code. This occurs by bypassing the command filtering function. However, it's important to note that this vulnerability is disputed due to the command filtering function not being intended to restrict what code can be run by authorized users.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share