An improper authorization level has been detected in the login panel. It may lead to
unauthenticated Server Side Request Forgery and allows to perform open services
enumeration. Server makes query to provided server (Server IP/DNS field) and is
triggering connection to arbitrary address.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: OpenText
Published: 2024-05-07T13:11:23.031Z
Updated: 2024-08-02T08:57:35.206Z
Reserved: 2024-01-23T18:47:50.140Z
Link: CVE-2023-7240
Vulnrichment
Updated: 2024-08-02T08:57:35.206Z
NVD
Status : Awaiting Analysis
Published: 2024-05-07T13:15:47.973
Modified: 2024-05-07T13:39:32.710
Link: CVE-2023-7240
Redhat
No data.