CVE-2023-4741

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Sep 3, 2023
Updated: May 17, 2024

Summary

CVE-2023-4741 is a newly disclosed critical vulnerability affecting IBOS OA 4.5.5. The issue lies within the Delete Logs Handler component's "?r=diary/default/del" file, which contains unknown code susceptible to SQL injection. This vulnerability can be exploited remotely, allowing attackers to manipulate the system. Though details about the exploit have been made public, the vendor has yet to respond to disclosure notifications, increasing the risk for potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share