CVE-2023-0994: Exposure of Sensitive Information to an Unauthorized Actor in francoisjacquet/rosariosis
Published Feb 24, 2023
·Updated
Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository francoisjacquet/rosariosis prior to 10.8.2.
Affected Software
1 affected component
RosarioSIS RosarioSIS<10.8.2
Remediation
Event History
Feb 24, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-0994.
2
What is the title of the vulnerability?
The title of the vulnerability is 'Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository francoisjacquet/rosariosis...'
3
What is the severity of CVE-2023-0994?
The severity of CVE-2023-0994 is high with a severity value of 7.5.
4
What software is affected by CVE-2023-0994?
The software affected by CVE-2023-0994 is Rosariosis with versions up to and excluding 10.8.2.
5
How can I fix CVE-2023-0994?
To fix CVE-2023-0994, it is recommended to update the GitHub repository francoisjacquet/rosariosis to version 10.8.2 or later.