CVE-2023-52200

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jan 8, 2024
Updated: Jan 11, 2024
CWE ID 352
CWE ID 502

Summary

CVE-2023-52200 is a Cross-Site Request Forgery (CSRF) and Deserialization of Untrusted Data vulnerability found in the Repute Infosystems ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup. This vulnerability affects multiple products, including different versions of the ARMember plugin and various other related products. The vulnerability has a risk score of 65 and a base severity rating of CRITICAL. It does not require any privileges or user interaction for exploitation and can be targeted remotely via the network. The impact includes high integrity and confidentiality risks, with a potential availability impact as well. Organizations should take immediate action to remediate this vulnerability to prevent unauthorized access and potential manipulation of user data or system resources.

Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Prioritize, Pinpoint, and Act to Prevent Vulnerability Exploits with Recorded Future

Note: This is just a basic overview providing quick insights into CVE-2023-52200 information. Gain full access to comprehensive CVE data, third party vulnerabilities, compromised credentials and more with Recorded Future
  • Gain complete coverage of your cyber, third party, and physical attack surface
  • Proactively mitigate threats before they turn into costly attacks
  • Make fast, effective, data-driven decisions