CVE-2023-47131: High severity n-able passportal vulnerability
Published Feb 8, 2024
·Updated
The N-able PassPortal extension before 3.29.2 for Chrome inserts sensitive information into a log file.
Affected Software
4 affected components
All of the following
N-able PassPortal<3.29.2
Any of the following
Google Chrome
Microsoft Edge
Mozilla Firefox
Event History
Feb 8, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-47131?
CVE-2023-47131 is classified as a moderate severity vulnerability due to the exposure of sensitive information.
2
How do I fix CVE-2023-47131?
To mitigate CVE-2023-47131, update the N-able PassPortal extension to version 3.29.2 or later.
3
What types of sensitive information are affected by CVE-2023-47131?
CVE-2023-47131 can lead to the logging of sensitive user credentials and session data.
4
Is CVE-2023-47131 specific to N-able PassPortal?
Yes, CVE-2023-47131 exclusively affects the N-able PassPortal extension prior to version 3.29.2.
5
Can CVE-2023-47131 impact other web browsers?
CVE-2023-47131 is limited to the N-able PassPortal extension and does not affect other browsers like Chrome, Edge, or Firefox directly.