CVE Vulnerabilities

CVE-2023-43320

Published: Sep 27, 2023 | Modified: Feb 02, 2024
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An issue in Proxmox Server Solutions GmbH Proxmox VE v.5.4 thru v.8.0, Proxmox Backup Server v.1.1 thru v.3.0, and Proxmox Mail Gateway v.7.1 thru v.8.0 allows a remote authenticated attacker to escalate privileges via bypassing the two-factor authentication component.

Affected Software

Name Vendor Start Version End Version
Backup_server Proxmox 1.1 (including) 3.0 (including)
Proxmox_mail_gateway Proxmox 7.1 (including) 8.0 (including)
Virtual_environment Proxmox 5.4 (including) 8.0 (including)

References