CVE-2023-1477: High severity keycloak authenticator vulnerability
Improper Authentication vulnerability in HYPR Keycloak Authenticator Extension allows Authentication Abuse.This issue affects HYPR Keycloak Authenticator Extension: before 7.10.2, before 8.0.3.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-1477?
The severity of CVE-2023-1477 is considered high due to its potential for authentication abuse.
How do I fix CVE-2023-1477?
To fix CVE-2023-1477, upgrade the HYPR Keycloak Authenticator Extension to version 7.10.2 or later, or to version 8.0.3 or later.
Which versions are affected by CVE-2023-1477?
CVE-2023-1477 affects HYPR Keycloak Authenticator Extension versions before 7.10.2 and between 8.0.0 and 8.0.3.
What impact does CVE-2023-1477 have on my system?
CVE-2023-1477 allows for improper authentication, potentially leading to unauthorized access to systems.
Is CVE-2023-1477 a remote or local vulnerability?
CVE-2023-1477 is primarily a remote vulnerability, allowing attackers to exploit authentication mechanisms without physical access.