CVE-2023-45560: Code Injection
Published Nov 14, 2023
·Updated
An issue in Yasukawa memberscard v.13.6.1 allows attackers to send crafted notifications via leakage of the channel access token.
Affected Software
1 affected component
Memberscard Project Memberscard Line=13.6.1
Event History
Nov 14, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-45560.
2
What is the severity of CVE-2023-45560?
The severity of CVE-2023-45560 is high with a score of 7.5.
3
What is the affected software for CVE-2023-45560?
The affected software for CVE-2023-45560 is Yasukawa memberscard v.13.6.1.
4
How can attackers exploit CVE-2023-45560?
Attackers can exploit CVE-2023-45560 by sending crafted notifications via leakage of the channel access token.
5
Is there a fix available for CVE-2023-45560?
Please refer to the official documentation or vendor for the available fix of CVE-2023-45560.