CVE-2023-6718
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Dec 13, 2023
Updated: Dec 18, 2023
CWE ID 306
CWE ID 288
Summary
CVE-2023-6718 is a newly discovered vulnerability affecting Repox, an unspecified software component. This issue permits a remote user to bypass authentication and manipulate user accounts through specially crafted POST requests. The lack of authentication checks enables unauthorized alteration or creation of user data. This vulnerability poses a significant risk, especially in environments where access control is essential. Organizations using Repox are advised to apply the available patch or update as soon as possible to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Europeana