An improper authorization level has been detected in the login panel. It may lead to unauthenticated Server Side Request Forgery and allows to perform open services enumeration. Server makes query to provided server (Server IP/DNS field) and is triggering connection to arbitrary address.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: OpenText

Published: 2024-05-07T13:11:23.031Z

Updated: 2024-08-02T08:57:35.206Z

Reserved: 2024-01-23T18:47:50.140Z

Link: CVE-2023-7240

cve-icon Vulnrichment

Updated: 2024-08-02T08:57:35.206Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-07T13:15:47.973

Modified: 2024-05-07T13:39:32.710

Link: CVE-2023-7240

cve-icon Redhat

No data.