CVE-2023-4741
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Sep 3, 2023
Updated: May 17, 2024
Summary
CVE-2023-4741 is a newly disclosed critical vulnerability affecting IBOS OA 4.5.5. The issue lies within the Delete Logs Handler component's "?r=diary/default/del" file, which contains unknown code susceptible to SQL injection. This vulnerability can be exploited remotely, allowing attackers to manipulate the system. Though details about the exploit have been made public, the vendor has yet to respond to disclosure notifications, increasing the risk for potential attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share