CVE-2023-4851
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Sep 9, 2023
Updated: May 17, 2024
CWE ID 89
Summary
CVE-2023-4851 is a newly disclosed critical vulnerability that impacts IBOS OA 4.5.5. The issue lies in unknown code within the file "?r=dashboard/position/edit&op=member." An attacker can exploit this vulnerability through sql injection, allowing for remote manipulation. The exploit has been made public, increasing the risk of potential attacks. This vulnerability is identified as VDB-239260.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- IBOs
Affected Vendors
- IBOs