First published: Wed Jun 21 2023(Updated: )
An access control issue in Makves DCAP v3.0.0.122 allows unauthenticated attackers to obtain cleartext credentials via a crafted web request to the product API.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Makves DCAP | =3.0.0.122 | |
Makves DCAP | =3.0.0.183 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-27243 is considered a high severity vulnerability due to the risk of exposing cleartext credentials to unauthenticated attackers.
To mitigate CVE-2023-27243, ensure proper access controls are implemented on the Makves DCAP API to prevent unauthorized access.
CVE-2023-27243 affects Makves DCAP versions 3.0.0.122 and 3.0.0.183.
CVE-2023-27243 is an access control issue that allows attackers to gain unauthorized access to sensitive information.
CVE-2023-27243 can allow unauthorized users to obtain cleartext credentials through crafted web requests.