First published: Thu Aug 03 2023(Updated: )
Due to insufficient file permissions, unprivileged users could gain access to unencrypted administrator credentials allowing the configuration of the application.
Credit: product-security@axis.com product-security@axis.com
Affected Software | Affected Version | How to fix |
---|---|---|
AXIS License Plate Verifier | <=2.8.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-21409 is critical with a severity value of 9.8.
Unprivileged users can gain access to unencrypted administrator credentials in CVE-2023-21409 due to insufficient file permissions.
The affected software in CVE-2023-21409 is AXIS License Plate Verifier version up to 2.8.3.
To fix the vulnerability in CVE-2023-21409, the file permissions need to be properly configured to prevent unprivileged users from accessing unencrypted administrator credentials.
More information about CVE-2023-21409 can be found at the following reference link: [https://www.axis.com/dam/public/0b/1c/96/cve-2023-2140712-en-US-409778.pdf](https://www.axis.com/dam/public/0b/1c/96/cve-2023-2140712-en-US-409778.pdf)