CVE-2023-51282

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Jan 16, 2024
Updated: Jan 23, 2024
CWE ID 94

Summary

CVE-2023-51282 is a vulnerability affecting mingSoft MCMS version 5.2.4. An attacker can exploit this issue by crafting a malicious script for the password parameter, allowing them to gain unauthorized access to sensitive information remotely. This vulnerability poses a significant risk, as it enables attackers to bypass authentication and potentially access confidential data. It is essential that users of this software version upgrade to a patch or otherwise implement measures to mitigate this risk. Failure to address this vulnerability could result in data breaches or other malicious activities.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share