CVE-2023-29121

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Nov 5, 2024
Updated: Nov 8, 2024
CWE ID 284

Summary

CVE-2023-29121 is a newly identified cybersecurity vulnerability affecting the Waybox Enel TCF Agent service. Maliciously crafted requests to this service can grant attackers administrator privileges, compromising the entire Waybox system. Successful exploitation allows unauthorized access to system configurations and sensitive data, posing a significant threat to the security and integrity of the affected infrastructure. The vulnerability underscores the importance of timely software updates and robust access control policies to mitigate potential risks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share