CVE-2023-48894
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Nov 30, 2023
Updated: Dec 6, 2023
Summary
CVE-2023-48894 is a newly disclosed access control vulnerability affecting jshERP V3.3. This issue grants unauthorized access to sensitive information through the misconfigured doFilter function, enabling attackers to bypass intended access restrictions and potentially gain unintended data access. The consequences of this vulnerability can lead to data breaches and unauthorized system access. It is crucial for jshERP V3.3 users to apply the necessary patches or updates to mitigate this risk and maintain the security of their systems.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share