An access control vulnerability was found, due to the restrictions that are applied on actual assertions not being enforced in their debug functionality.
An authenticated user with reduced visibility can obtain unauthorized information via the debug functionality, obtaining data that would normally be not accessible in the Query and Assertions functions.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://security.nozominetworks.com/NN-2023:5-01 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: Nozomi
Published: 2023-08-09T08:54:27.616Z
Updated: 2024-08-02T10:56:04.274Z
Reserved: 2023-01-24T10:39:24.296Z
Link: CVE-2023-24471
Vulnrichment
Updated: 2024-08-02T10:56:04.274Z
NVD
Status : Modified
Published: 2023-08-09T09:15:13.860
Modified: 2024-11-21T07:47:55.473
Link: CVE-2023-24471
Redhat
No data.