CVE-2023-48758

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Jan 2, 2025
CWE ID 862

Summary

CVE-2023-48758 is a critical vulnerability affecting Crocoblock JetEngine, where missing authorization controls allow unauthorized access. Specifically, this issue arises due to incorrectly configured access control security levels. This defect has been reported to impact JetEngine versions from n/a through 3.2.4. Successful exploitation could result in significant data breaches or unintended system modifications. It is recommended that users of the affected versions upgrade to the latest JetEngine patch as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share