First published: Wed Jun 07 2023(Updated: )
An attacker with local access to the machine could record the traffic, which could allow them to resend requests without the server authenticating that the user or session are valid.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
PTC Vuforia Studio | <9.9 | |
PTC Vuforia Studio: all versions prior to 9.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-24476 is a vulnerability that allows an attacker with local access to the machine to record traffic and resend requests without proper authentication.
CVE-2023-24476 affects versions of PTC Vuforia Studio up to exclusive version 9.9.
CVE-2023-24476 has a low severity rating with a severity value of 3.3.
An attacker with local access to the machine can record traffic and use it to resend requests without proper authentication.
At the moment, there is no known fix for CVE-2023-24476. It is recommended to follow any advice or updates from the software vendor.