CVE-2023-34353

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Sep 5, 2023
Updated: Sep 8, 2023
CWE ID 330

Summary

CVE-2023-34353 is a newly identified authentication bypass vulnerability affecting the OAS Engine authentication functionality in Open Automation Software OAS Platform version 18.00.0072. This issue allows unauthorized access to sensitive information through a specially crafted network sniffing technique. An attacker can decrypt and gain access to confidential data by exploiting this vulnerability, making it a serious security concern for affected organizations. Users are advised to update their software as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share