CVE-2023-46906

CVSS 3.1 Score 4.9 of 10 (medium)

Details

Published Jan 9, 2024
Updated: Jan 12, 2024

Summary

CVE-2023-46906: A vulnerability has been identified in juzaweb versions below 3.5, which can lead to an application outage. This issue arises due to incorrect access control, specifically in the handling of the timezone field in HTTP requests. The improper validation of the payload in this field can result in unintended application behavior and eventual downtime. It is important for users of affected versions to update their software to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share