Description
The QSige login SSO does not have an access control mechanism to verify whether the user requesting a resource has sufficient permissions to do so. As a prerequisite, it is necessary to log into the application.
No analysis available yet.
Remediation
Vendor Solution
The reported vulnerabilities are fixed in the latest version of the affected product.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-53991 | The QSige login SSO does not have an access control mechanism to verify whether the user requesting a resource has sufficient permissions to do so. As a prerequisite, it is necessary to log into the application. |
References
History
Mon, 23 Sep 2024 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-09-23T17:06:19.046Z
Reserved: 2023-08-02T11:53:05.863Z
Link: CVE-2023-4101
Updated: 2024-08-02T07:17:11.929Z
Status : Modified
Published: 2023-10-03T12:15:10.973
Modified: 2024-11-21T08:34:23.653
Link: CVE-2023-4101
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD