Umbraco is an ASP.NET content management system (CMS). Starting in version 8.0.0 and prior to versions 8.18.10, 10.8.1, and 12.3.4, users with low privileges (Editor, etc.) are able to access some unintended endpoints. Versions 8.18.10, 10.8.1, and 12.3.4 contain a patch for this issue.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-3183 | Umbraco is an ASP.NET content management system (CMS). Starting in version 8.0.0 and prior to versions 8.18.10, 10.8.1, and 12.3.4, users with low privileges (Editor, etc.) are able to access some unintended endpoints. Versions 8.18.10, 10.8.1, and 12.3.4 contain a patch for this issue. |
Github GHSA |
GHSA-cfr5-7p54-4qg8 | Privilege Escalation using Spoofing |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-02T21:53:45.336Z
Reserved: 2023-11-24T16:45:24.310Z
Link: CVE-2023-49273
No data.
Status : Modified
Published: 2023-12-12T19:15:08.087
Modified: 2024-11-21T08:33:09.653
Link: CVE-2023-49273
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA