An authentication bypass vulnerability has been found in Repox, which allows a remote user to send a specially crafted POST request, due to the lack of any authentication method, resulting in the alteration or creation of users.
Fixes

Solution

There is no reported solution at this time.


Workaround

No workaround given by the vendor.

History

Tue, 01 Oct 2024 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2024-10-01T14:47:57.187Z

Reserved: 2023-12-12T08:04:43.267Z

Link: CVE-2023-6718

cve-icon Vulnrichment

Updated: 2024-08-02T08:35:14.908Z

cve-icon NVD

Status : Modified

Published: 2023-12-13T09:15:34.780

Modified: 2024-11-21T08:44:24.977

Link: CVE-2023-6718

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.