CVE-2023-6483

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Dec 18, 2023
Updated: Dec 22, 2023
CWE ID 287

Summary

CVE-2023-6483 is a newly discovered vulnerability affecting ADiTaaS (Allied Digital Integrated Tool-as-a-Service) version 5.1. The issue lies in the ADiTaaS backend API, which lacks proper authentication measures. An attacker can exploit this vulnerability by crafting malicious HTTP requests, gaining unauthorized access to the system. This vulnerability poses a significant risk, as successful exploitation grants the attacker full control over customers' data and complete compromise of the targeted platform.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share