CVE-2023-38830

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Aug 10, 2023
Updated: Nov 7, 2023
CWE ID 668

Summary

CVE-2023-38830 is a newly disclosed vulnerability affecting the PHPJabbers Yacht Listing Script version 1.0. This issue permits attackers to gain unauthorized access to sensitive data, specifically credit card numbers, through the Reservations module. The vulnerability stems from an information leak that enables data extraction, posing a significant risk to clients' financial information. Attackers can potentially exploit this flaw to steal and misuse credit card data. PHPJabbers is urged to address this vulnerability promptly by issuing a patch or update to mitigate the risk. Users are advised to secure their installations by applying the necessary fixes as soon as they become available.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share