ZDI-CAN-21344: Adobe FrameMaker Publishing Server Authentication Bypass Vulnerability

Stammdaten

Kritikalität
CVE ID
CVE-2023-44324
Aktualisiert am:
2024-03-15T16:38:35.947Z
Veröffentlicht am:
2023-11-17T12:27:08.996Z
 

Betroffene Produkte

Hersteller:
Adobe
Produkt(e):
Adobe Framemaker Publishing Server
Betroffene Version:
0
 

Beschreibung

Adobe FrameMaker Publishing Server versions 2022 and earlier are affected by an Improper Authentication vulnerability that could result in a Security feature bypass. An unauthenticated attacker can abuse this vulnerability to access the API and leak default admin's password. Exploitation of this issue does not require user interaction.
 

Referenzen

 

NIST-Link:


Copyright © 2024 · All Rights Reserved · https://www.tecxero.com | Impressum