CVE-2023-50110
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Dec 30, 2023
Updated: Jan 5, 2024
Summary
CVE-2023-50110 is a vulnerability affecting TestLink versions up to 1.9.20. Hackers can exploit this issue by performing type juggling during authentication, enabling bypass of security checks and potentially gaining unauthorized access to the system. The vulnerability arises due to the failure to use === operator correctly during the authentication process. This weakness exposes TestLink installations to serious security risks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Testlink