CVE-2023-28348: High severity faronics insight vulnerability
Published May 30, 2023
·Updated
An issue was discovered in Faronics Insight 10.0.19045 on Windows. A suitably positioned attacker could perform a man-in-the-middle attack on either a connected student or teacher, enabling them to intercept student keystrokes or modify executable files being sent from teachers to students.
Affected Software
4 affected components
All of the following
Faronics Insight=10.0.19045
Microsoft Windows
Faronics Insight=10.0.19045
Microsoft Windows
Event History
May 30, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
May 31, 2023
Data Sourced
12:15 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this issue in Faronics Insight on Windows?
The vulnerability ID is CVE-2023-28348.
2
What is the severity level of CVE-2023-28348?
The severity level of CVE-2023-28348 is high, with a severity value of 7.4.
3
What is the affected software of CVE-2023-28348?
The affected software of CVE-2023-28348 is Faronics Insight version 10.0.19045 on Windows.
4
What is the attack vector of CVE-2023-28348?
The attack vector of CVE-2023-28348 is a man-in-the-middle attack on either a connected student or teacher.
5
What can the attacker do with CVE-2023-28348?
The attacker can intercept student keystrokes or modify executable files being sent from teachers to students.