CVE Vulnerabilities

CVE-2023-38752

Published: Aug 09, 2023 | Modified: Nov 21, 2024
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Improper authorization vulnerability in Special Interest Group Network for Analysis and Liaison versions 4.4.0 to 4.7.7 allows the authorized API users to view the attribute information of the poster that is set asnon-disclosure in the system settings.

Affected Software

NameVendorStart VersionEnd Version
Special_interest_group_network_for_analysis_and_liaisonJpcert4.4.0 (including)4.7.7 (including)

References