CVE-2023-38751

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Aug 9, 2023
Updated: Aug 18, 2023

Summary

CVE-2023-38751 is a newly identified authorization vulnerability affecting Special Interest Group Network for Analysis and Liaison versions 4.4.0 to 4.7.7. This issue allows authenticated API users to bypass intended access controls and view "non-disclosure" organization information of the information receiver in the information provision operation. The vulnerability could potentially lead to unintended data exposure, posing a significant risk to organizational security. It is important that affected users upgrade to the latest software version or apply the appropriate patches to mitigate this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share