An improper authorization level has been detected in the login panel. It may lead to
unauthenticated Server Side Request Forgery and allows to perform open services
enumeration. Server makes query to provided server (Server IP/DNS field) and is
triggering connection to arbitrary address.
References
Configurations
No configuration.
History
07 May 2024, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-05-07 13:15
Updated : 2024-05-07 13:39
NVD link : CVE-2023-7240
Mitre link : CVE-2023-7240
CVE.ORG link : CVE-2023-7240
JSON object : View
Products Affected
No product.
CWE
CWE-20
Improper Input Validation