CVE-2023-24028: Critical severity misp vulnerability
Published Jan 20, 2023
·Updated
In MISP 2.4.167, app/Controller/Component/ACLComponent.php has incorrect access control for the decaying import function.
Affected Software
1 affected component
Misp-project Misp=2.4.167
Remediation
Event History
Jan 20, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-24028?
The severity of CVE-2023-24028 is critical.
2
What is the affected software version of CVE-2023-24028?
CVE-2023-24028 affects MISP version 2.4.167.
3
What is the vulnerability description of CVE-2023-24028?
CVE-2023-24028 is a vulnerability in MISP 2.4.167 that has incorrect access control for the decaying import function.
4
How can I fix CVE-2023-24028?
To fix CVE-2023-24028, it is recommended to update MISP to a version that includes the fix, such as version 2.4.168 or later.
5
Where can I find more information about CVE-2023-24028?
You can find more information about CVE-2023-24028 at the following link: https://github.com/MISP/MISP/commit/93bf15d3bd703a32ebfe86cb6c1c9b735cf23e30