CVE-2023-39737

CVSS 3.1 Score 8.2 of 10 (high)

Details

Published Oct 25, 2023
Updated: Oct 31, 2023

Summary

CVE-2023-39737 is a newly identified vulnerability in Matsuya Line 13.6.1. This issue results in the unintended disclosure of client secrets, enabling attackers to acquire channel access tokens. With access tokens in hand, adversaries can then transmit crafted broadcast messages to unsuspecting users. This vulnerability poses a significant risk to security, as it grants unauthorized users the ability to impersonate legitimate entities and potentially disrupt communications. It is crucial that affected organizations take immediate steps to address this issue and mitigate the risk of exploitation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share