CVE-2023-48758
CVSS 3.1 Score 7.1 of 10 (high)
Details
Published Jan 2, 2025
CWE ID 862
Summary
CVE-2023-48758 is a critical vulnerability affecting Crocoblock JetEngine, where missing authorization controls allow unauthorized access. Specifically, this issue arises due to incorrectly configured access control security levels. This defect has been reported to impact JetEngine versions from n/a through 3.2.4. Successful exploitation could result in significant data breaches or unintended system modifications. It is recommended that users of the affected versions upgrade to the latest JetEngine patch as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.