CVE-2023-34353
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Sep 5, 2023
Updated: Sep 8, 2023
CWE ID 330
Summary
CVE-2023-34353 is a newly identified authentication bypass vulnerability affecting the OAS Engine authentication functionality in Open Automation Software OAS Platform version 18.00.0072. This issue allows unauthorized access to sensitive information through a specially crafted network sniffing technique. An attacker can decrypt and gain access to confidential data by exploiting this vulnerability, making it a serious security concern for affected organizations. Users are advised to update their software as soon as possible to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Open Automation Software