CVE-2023-43503
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Nov 14, 2023
Updated: Nov 17, 2023
CWE ID 319
Summary
CVE-2023-43503 is a newly identified vulnerability affecting the COMOS application (all versions below V10.4.4). The flaw lies in its caching system, which inadvertently discloses sensitive information, including user and project details, via UDP in cleartext. This vulnerability poses a significant risk to organizations using COMOS, as the exposed data could be easily exploited by attackers for unauthorized access or data theft. It is highly recommended that users upgrade to the latest version of COMOS as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Siemens COMOS
Affected Vendors
- Siemens AG