CVE-2023-28094: Critical severity pega platform vulnerability
Published Jun 22, 2023
·Updated
Pega platform clients who are using versions 7.4 through 8.8.x and have upgraded from a version prior to 8.x may be utilizing default credentials.
Affected Software
1 affected component
Pega Pega Platform>=6.1<=8.8.3
Event History
Jun 22, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which versions of Pega platform are affected by CVE-2023-28094?
Versions 7.4 through 8.8.x of Pega platform are affected.
2
What is the severity level of CVE-2023-28094?
CVE-2023-28094 has a severity level of critical.
3
Is CVE-2023-28094 related to default credentials in Pega platform?
Yes, CVE-2023-28094 is related to default credentials in Pega platform.
4
Which CWE category does CVE-2023-28094 belong to?
CVE-2023-28094 belongs to CWE category 1393.
5
Where can I find more information about CVE-2023-28094?
More information about CVE-2023-28094 can be found at the following link: [https://support.pega.com/support-doc/pega-security-advisory-%E2%80%93-c23-vulnerability-default-operators?](https://support.pega.com/support-doc/pega-security-advisory-%E2%80%93-c23-vulnerability-default-operators?)