First published: Fri Jun 23 2023(Updated: )
A permission issue in BigFix WebUI Insights site version 14 allows an authenticated, unprivileged operator to access an administrator page.
Credit: psirt@hcl.com psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hcltech Bigfix Webui Insights | =14 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-23344 is a vulnerability found in BigFix WebUI Insights site version 14.
CVE-2023-23344 has a severity level of medium, with a CVSS score of 6.5.
CVE-2023-23344 allows an authenticated, unprivileged operator to access an administrator page in BigFix WebUI Insights site version 14.
The CWE ID for CVE-2023-23344 is CWE-276.
To fix CVE-2023-23344, it is recommended to upgrade to a patched version of BigFix WebUI Insights site.