CVE-2023-4190

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Aug 6, 2023
Updated: Aug 9, 2023
CWE ID 287
CWE ID 1390

Summary

CVE-2023-4190 is a session expiration issue affecting the GitHub repository admidio/admidio before version 4.2.11. The vulnerability permits unauthorized access to user accounts if an attacker obtains a valid session cookie. Users are advised to update the repository to the latest version or take measures to secure their session cookies to mitigate this risk. This weakness could lead to serious consequences, including data breaches and unauthorized actions on the affected accounts. The admidio team has released a patch to address the issue, and users are encouraged to install it promptly to protect their repository from potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Prioritize, Pinpoint, and Act to Prevent Vulnerability Exploits with Recorded Future

Note: This is just a basic overview providing quick insights into CVE-2023-4190 information. Gain full access to comprehensive CVE data, third party vulnerabilities, compromised credentials and more with Recorded Future
  • Gain complete coverage of your cyber, third party, and physical attack surface
  • Proactively mitigate threats before they turn into costly attacks
  • Make fast, effective, data-driven decisions