CVE-2023-1784: jeecg-boot API Documentation improper authentication
Published Mar 31, 2023
·Updated
A vulnerability was found in jeecg-boot 3.5.0 and classified as critical. This issue affects some unknown processing of the component API Documentation. The manipulation leads to improper authentication. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-224699.
Affected Software
1 affected component
Jeecg jeecg boot=3.5.0
Event History
Mar 31, 2023
CVE Published
08:00 PM
Data Sourced
08:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability identifier for this issue?
The vulnerability identifier for this issue is CVE-2023-1784.
2
What is the severity of CVE-2023-1784?
The severity of CVE-2023-1784 is critical with a CVSS score of 9.8.
3
Which software version is affected by CVE-2023-1784?
The software version affected by CVE-2023-1784 is jeecg-boot 3.5.0.
4
What is the CWE ID for this vulnerability?
The CWE ID for this vulnerability is CWE-287.
5
How can I fix CVE-2023-1784?
To fix CVE-2023-1784, update your jeecg-boot software to a version that is not affected by this vulnerability.