First published: Wed Oct 25 2023(Updated: )
An issue in tire-sales Line v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linecorp Line | =13.6.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-38849.
The severity level of CVE-2023-38849 is high (7.5).
A remote attacker can exploit CVE-2023-38849 by sending a crafted GET request to obtain sensitive information.
The affected software version of CVE-2023-38849 is Line v.13.6.1.
To fix CVE-2023-38849, update the tire-sales Line software to a version that is not affected by the vulnerability.