CVE Vulnerabilities

CVE-2023-38751

Published: Aug 09, 2023 | Modified: Nov 21, 2024
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Improper authorization vulnerability in Special Interest Group Network for Analysis and Liaison versions 4.4.0 to 4.7.7 allows the authorized API users to view the organization information of the information receiver that is set as non-disclosure in the information provision operation.

Affected Software

NameVendorStart VersionEnd Version
Special_interest_group_network_for_analysis_and_liaisonJpcert4.4.0 (including)4.7.7 (including)

References