CVE-2023-0678: Missing Authorization in phpipam/phpipam
Published Feb 4, 2023
·Updated
Missing Authorization in GitHub repository phpipam/phpipam prior to v1.5.1.
Affected Software
1 affected component
Phpipam Phpipam<1.5.1
Remediation
Event History
Feb 4, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-0678?
The severity of CVE-2023-0678 is high.
2
How does CVE-2023-0678 affect phpipam/phpipam?
CVE-2023-0678 affects phpipam/phpipam prior to v1.5.1.
3
What is the recommended version of phpipam/phpipam to fix CVE-2023-0678?
To fix CVE-2023-0678, it is recommended to upgrade to phpipam/phpipam v1.5.1 or later.
4
What is the Common Weakness Enumeration (CWE) number associated with CVE-2023-0678?
The Common Weakness Enumeration (CWE) number associated with CVE-2023-0678 is CWE-862.
5
Where can I find more information about CVE-2023-0678?
You can find more information about CVE-2023-0678 on the GitHub commit (https://github.com/phpipam/phpipam/commit/1960bd24e8a55796da066237cf11272c44bb1cc4) and huntr.dev (https://huntr.dev/bounties/8d299377-be00-46dc-bebe-3d439127982f) pages.