First published: Thu Aug 03 2023(Updated: )
Due to insufficient file permissions, unprivileged users could gain access to unencrypted user credentials that are used in the integration interface towards 3rd party systems.
Credit: product-security@axis.com product-security@axis.com
Affected Software | Affected Version | How to fix |
---|---|---|
AXIS License Plate Verifier | <=2.8.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2023-21408.
The severity of CVE-2023-21408 is critical with a score of 9.8.
CVE-2023-21408 is a vulnerability that allows unprivileged users to gain access to unencrypted user credentials used in the integration interface towards 3rd party systems due to insufficient file permissions.
The AXIS License Plate Verifier version 2.8.3 and earlier is affected by CVE-2023-21408.
To fix CVE-2023-21408, it is recommended to apply the latest security patch provided by AXIS.