CVE-2023-2140: Server-Side Request Forgery vulnerability affecting DELMIA Apriso Release 2017 through Release 2022
A Server-Side Request Forgery vulnerability in DELMIA Apriso Release 2017 through Release 2022
could allow an unauthenticated attacker to issue requests to arbitrary hosts on behalf of the server running the DELMIA Apriso application.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-2140?
CVE-2023-2140 is a Server-Side Request Forgery vulnerability in DELMIA Apriso Release 2017 through Release 2022.
What is the impact of CVE-2023-2140?
CVE-2023-2140 could allow an unauthenticated attacker to issue requests to arbitrary hosts on behalf of the server running the DELMIA Apriso application.
How can an attacker exploit CVE-2023-2140?
An attacker can exploit CVE-2023-2140 by sending crafted requests to the vulnerable DELMIA Apriso application.
How severe is CVE-2023-2140?
CVE-2023-2140 has a severity rating of 7.5 (high).
How can I fix CVE-2023-2140?
To fix CVE-2023-2140, it is recommended to apply the latest security patches provided by the vendor.