Improper authorization vulnerability in Special Interest Group Network for Analysis and Liaison versions 4.4.0 to 4.7.7 allows the authorized API users to view the organization information of the information receiver that is set as "non-disclosure" in the information provision operation.
History

Thu, 17 Oct 2024 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2023-08-09T03:29:37.666Z

Updated: 2024-10-17T14:18:01.982Z

Reserved: 2023-07-25T03:35:17.588Z

Link: CVE-2023-38751

cve-icon Vulnrichment

Updated: 2024-08-02T17:54:38.324Z

cve-icon NVD

Status : Analyzed

Published: 2023-08-09T04:15:10.047

Modified: 2023-08-18T16:37:43.763

Link: CVE-2023-38751

cve-icon Redhat

No data.