CVE-2023-39046

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Sep 18, 2023
Updated: Sep 20, 2023
CWE ID 668

Summary

CVE-2023-39046 is a newly discovered vulnerability in TonTon-Tei_waiting Line v13.6.1. This issue permits attackers to exploit an information leak, granting them access to the channel access token. With the token in hand, unauthorized users can send manipulated messages, potentially causing disruptions and unintended actions within the affected channels. The severity of this vulnerability lies in the potential for unauthenticated users to gain control over communication channels, leading to potential privacy and security risks. Organizations using TonTon-Tei_waiting Line are strongly encouraged to update to the latest version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share