CVE Vulnerabilities

CVE-2023-38752

Published: Aug 09, 2023 | Modified: Aug 18, 2023
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Improper authorization vulnerability in Special Interest Group Network for Analysis and Liaison versions 4.4.0 to 4.7.7 allows the authorized API users to view the attribute information of the poster that is set asnon-disclosure in the system settings.

Affected Software

Name Vendor Start Version End Version
Special_interest_group_network_for_analysis_and_liaison Jpcert 4.4.0 (including) 4.7.7 (including)

References