CVE-2023-23561: Medium severity stormshield endpoint security vulnerability
Published May 30, 2023
·Updated
Stormshield Endpoint Security 2.3.0 through 2.3.2 has Incorrect Access Control: authenticated users can read sensitive information.
Affected Software
1 affected component
Stormshield Endpoint Security>=2.3.0<2.4.1
Event History
May 30, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
08:15 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2023-23561.
2
What is the title of this vulnerability?
The title of this vulnerability is 'Stormshield Endpoint Security 2.3.0 through 2.3.2 has Incorrect Access Control: authenticated users can read sensitive information.'
3
What is the affected software?
The affected software is Stormshield Endpoint Security version 2.3.0 through 2.3.2.
4
What is the severity of this vulnerability?
The severity of this vulnerability is medium with a CVSS score of 5.5.
5
How can I fix this vulnerability?
To fix this vulnerability, update Stormshield Endpoint Security to version 2.4.1 or above.