Sulu is an open-source PHP content management system based on the Symfony framework. It allows over the Admin Login form to detect which user (username, email) exists and which one do not exist. Sulu Installation not using the old Symfony 5.4 security System and previous version are not impacted by this Security issue. The vulnerability has been patched in version 2.5.10.
History

Thu, 03 Oct 2024 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2023-08-04T00:06:29.997Z

Updated: 2024-10-03T18:21:46.144Z

Reserved: 2023-07-28T13:26:46.476Z

Link: CVE-2023-39343

cve-icon Vulnrichment

Updated: 2024-08-02T18:02:06.889Z

cve-icon NVD

Status : Analyzed

Published: 2023-08-04T01:15:10.250

Modified: 2023-08-08T18:55:13.367

Link: CVE-2023-39343

cve-icon Redhat

No data.