CVE-2023-4704

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Sep 1, 2023
Updated: Sep 7, 2023
CWE ID 787

Summary

CVE-2023-4704 is a vulnerability affecting the GitHub repository instantsoft/icms2 before version 2.16.1-git. An attacker can exploit this external control vulnerability to manipulate system or configuration settings within the affected software, potentially leading to unauthorized access, data breaches, or other malicious activities. Users are strongly advised to update their installations to the latest version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share