CVE-2023-50110

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Dec 30, 2023
Updated: Jan 5, 2024

Summary

CVE-2023-50110 is a vulnerability affecting TestLink versions up to 1.9.20. Hackers can exploit this issue by performing type juggling during authentication, enabling bypass of security checks and potentially gaining unauthorized access to the system. The vulnerability arises due to the failure to use === operator correctly during the authentication process. This weakness exposes TestLink installations to serious security risks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share