CVE-2023-4005: Insufficient Session Expiration in fossbilling/fossbilling
Published Jul 31, 2023
·Updated
Insufficient Session Expiration in GitHub repository fossbilling/fossbilling prior to 0.5.5.
Affected Software
1 affected component
fossbilling fossbilling<0.5.5
Remediation
Event History
Jul 31, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-4005?
CVE-2023-4005 is a vulnerability related to insufficient session expiration in the GitHub repository fossbilling/fossbilling prior to version 0.5.5.
2
How does CVE-2023-4005 affect Fossbilling Fossbilling?
CVE-2023-4005 affects Fossbilling Fossbilling versions prior to 0.5.5.
3
What is the severity level of CVE-2023-4005?
CVE-2023-4005 has a severity level of critical.
4
How can I fix CVE-2023-4005?
To fix CVE-2023-4005, update your Fossbilling Fossbilling installation to version 0.5.5 or higher.
5
Is there any additional information on CVE-2023-4005?
You can find more information on CVE-2023-4005 at the following references: [GitHub Commit](https://github.com/fossbilling/fossbilling/commit/20c23b051eb690cb4ae60a257f6bb46eb3aae2d1) and [Huntr Bounty](https://huntr.dev/bounties/f0aacce1-79bc-4765-95f1-7e824433b9e4).